What attack technique is often leveraged by advanced persistent threat groups but not commonly available to other attackers, such as script kiddies and hacktivists?Group of answer choicesZero-day exploitSocial engineeringTrojan horseSQL injectio
Question
What attack technique is often leveraged by advanced persistent threat groups but not commonly available to other attackers, such as script kiddies and hacktivists?Group of answer choicesZero-day exploitSocial engineeringTrojan horseSQL injectio
Solution
The attack technique often leveraged by advanced persistent threat groups but not commonly available to other attackers, such as script kiddies and hacktivists, is the Zero-day exploit.
Here's why:
-
Zero-day exploits are attacks that take advantage of a security vulnerability on the same day that the vulnerability becomes generally known. There are zero days between the time the vulnerability is discovered and the first attack.
-
Advanced persistent threat (APT) groups are typically state-sponsored or well-funded groups that have the resources to discover these vulnerabilities and develop exploits for them. They also have the patience to wait and use these exploits at the most opportune time.
-
On the other hand, script kiddies and hacktivists typically rely on known vulnerabilities and readily available exploit tools. They often lack the resources and skills to discover new vulnerabilities and develop zero-day exploits.
-
Social engineering, Trojan horses, and SQL injections are common attack techniques that can be used by any attacker, not just APT groups. These techniques rely on known vulnerabilities and do not require the discovery of new vulnerabilities.
Similar Questions
Which of the following comes under the threat category ‘Software Attack’?Group of answer choicesBuffer OverrunSQL InjectionCross-Site ScriptingTrojan Horse
Which is not a form of software attack?Group of answer choicesDMZLogic bombBackdoorTrojan Horse
Which of the following attacks involves cyber criminals exploiting vulnerrabilities that are not yet known to the general public and which do not have any defenses implemented yet?Man-in-the-middleDenial of ServicePhishingZero Day
List and explain different types of attack.
Which two groups of people are considered internal attackers? (Choose two.)Select one or more:trusted partnersblack hat hackersex-employeesamateurshacktivists
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.