click below
click below
Normal Size Small Size show me how
2.1
Common threat actors and motivations
| Term | Definition |
|---|---|
| Unskilled attackers | limited technical knowledge to develop their own tools or exploits |
| Hacktivists | driven by political, social, or environmental ideologies who want to draw attention to a cause |
| Organized crime | groups attacking for financial gain usually |
| Organized crime attack examples | Ransomware, identity theft, credit card fraud |
| Nation-state actors | skilled actors hired by the government to carry out cyber espionage against other nation states |
| Shadow IT | systems and software used without explicit organization approval |
| Data exfiltration | unauthorized transfer of data from a computer |
| Most common type of motive | Financial gain |
| Service disruption | usually DDoS to overwhelm a network/server with excessive traffic so it is unusable |
| Philosophical/political beliefs | entities use hacking to promote an agenda or protest against organizations |
| Ethical reasons | authorized/ethical hackers aim to improve security (pen testers) |
| Espionage | spying on organizations or nations to gather sensitive information |
| Internal threat actor | entity within an organization who are a threat to its security |
| External threat actor | those outside the org who attempt to breach its defenses |
| Unskilled attacker motive | Thrill or recognition |
| Hacktivist techniques | website defacement, DDoS, doxxing, leaking data |
| Advanced persistent threat | nation-state actor or org. crime group with long term persistence and stealth |