Cyber Kill Chain

The Unified Kill Chain is an evolved framework that builds upon the foundations of the original Lockheed Martin Cyber Kill Chain to provide a more comprehensive view of modern attacks. Here I just called it Cyber Kill Chain

The term kill chain is a military concept related to the structure of an attack. It consists of target identification, decision and order to attack the target, and finally the target destruction.

Why Matters?

Knowing this help the defenders predict the nest step of the attackers, and it allows them to better defend the system. If we as defenders see a C2 beacon (Command & Control), we shouldn’t go back and try to find the Delivery (still important during invistigation). Instead, we should watch out for data exfiltration which might the the attackers’ objectives.

Description

Details

Extended Readings