Which of the following phases of the cyber kill chain involv - CompTIA CySA+ CSO-003

Question

Which of the following phases of the Cyber Kill Chain involves the adversary attempting to establish communication with a successfully exploited target?

Answers
  1. correct
Explanation

The correct answer is: A. Command and control

  • This is the correct answer because in the Command and Control (C2) phase of the Cyber Kill Chain, the adversary attempts to establish a communication channel with the compromised system. After successfully exploiting a target, the attacker will establish a command-and-control channel to allow remote communication and control over the compromised system, often for further exploitation or data exfiltration. This phase is crucial for maintaining persistence within the target network.

Why the Other Options Are Incorrect:

Actions on objectives

  • This is incorrect because the Actions on Objectives phase occurs after the adversary has established control over the system. It involves the attacker achieving their ultimate goals, such as stealing data, disrupting operations, or executing further malicious actions. The establishment of communication happens earlier, in the C2 phase.

Exploitation

  • This is incorrect because Exploitation refers to the phase where the adversary takes advantage of a vulnerability in the target system to gain unauthorized access. While exploitation is critical for gaining access, it does not involve establishing communication. Communication is set up in the Command and Control phase, which follows successful exploitation.

Delivery

  • This is incorrect because Delivery involves the adversary sending the malicious payload to the target, such as through phishing emails or malware-laden attachments. Delivery is the initial phase of the kill chain, not the phase where communication is established.

No Payment Cards Needed

Related Courses

Discover a range of courses designed to provide you with the knowledge and skills needed to excel in your chosen field.

a prepsaret exam featured image
CompTIA Prep

220-1201 - CompTIA A+ Exam Core 1

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

220-1202 - CompTIA A+ Exam Core 2

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA SecurityX CAS-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud Essentials+ CLO-002

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Network+ N10-009

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Security+ SY0-701

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Data + DA0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Pentest+

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Linux+ XK0-005

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA DataSys+ DS0-001

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Tech+ FC0-U71

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Cloud+ CV0-004

Start Course Prep
a prepsaret exam featured image
CompTIA Prep

CompTIA Server+ SK0-005

Start Course Prep

Easy way to pass your test within a week with prepsaret

You don’t need one month to study and pass your test.
With Prepsaret, it takes you a few days to grasp all the concepts needed to pass your exams

View Courses Offered