To access material, start machines and answer questions login.
Inspired by the military kill chains, the Cyber Kill Chain is a cyber security framework introduced by Lockheed Martin in 2011. It is created to help organisations defend against cyber attacks by understanding how they are conducted. The Cyber Kill Chain divides an attack into seven stages:
- Reconnaissance: In the first stage, the attacker gathers information about the target
- Weaponisation: Once proper reconnaissance is conducted, the attacker creates a deliverable payload or modifies an existing one based on the target system’s vulnerabilities
- Delivery: Once ready, the attacker sends the weaponised payload to the target
- Exploitation: Once executed, the payload exploits a vulnerability in the target’s system
- Installation: The exploitation enables the attacker to install a backdoor or malware to maintain in the target’s environment
- Command & Control (): Using the installed backdoor, the attacker can control the compromised system
- Actions on Objectives: Reaching this far, the attacker can now carry out further actions such as data exfiltration or other systems’ exploitation
When an organisation learns about each stage, it has a better chance of breaking the chain and interrupting an attack while it is in progress.
Learning Objectives
Upon the completion of this room, you will learn about:
- The seven stages of the Cyber Kill Chain
- Explore various attack examples within each stage
- Visit different defence examples related to each stage
Learning Prerequisites
We recommend that users finish the Cyber Security 101 path to get the most out of this room.
How many phases comprise the Cyber Kill Chain?
Ready to learn Cyber Security?
The Cyber Kill Chain room is only available for premium users. Signup now to access more than 500 free rooms and learn cyber security through a fun, interactive learning environment.
Already have an account? Log in