Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 200-201 Exam - Topic 4 Question 81 Discussion

A cyberattacker notices a security flaw in a software that a company is using They decide to tailor a specific worm to exploit this flaw and extract saved passwords from the software To which category of the Cyber Kill Cham model does this event belong?
C) weaponization
A) reconnaissance
B) delivery
D) exploitation

Cisco 200-201 Exam - Topic 4 Question 81 Discussion

Actual exam question for Cisco's 200-201 exam
Question #: 81
Topic #: 4
[All 200-201 Questions]

A cyberattacker notices a security flaw in a software that a company is using They decide to tailor a specific worm to exploit this flaw and extract saved passwords from the software To which category of the Cyber Kill Cham model does this event belong?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Major
9 months ago
Really? I thought it was more about delivery.
upvoted 0 times
...
Elmer
9 months ago
Totally agree, it's exploitation for sure!
upvoted 0 times
...
Cristy
10 months ago
Wait, are we sure it's not reconnaissance first?
upvoted 0 times
...
Kandis
10 months ago
I think it's weaponization, though.
upvoted 0 times
...
Desmond
10 months ago
This is definitely exploitation.
upvoted 0 times
...
Ma
10 months ago
I was confused about the difference between delivery and exploitation, but it seems like they already have the worm ready, so it must be exploitation.
upvoted 0 times
...
Jaime
11 months ago
I feel like this is definitely exploitation because they are actually using the worm to extract passwords.
upvoted 0 times
...
Margurite
11 months ago
I'm not entirely sure, but I remember something about weaponization being when the attacker creates the malware. Could this be that?
upvoted 0 times
...
Merrilee
11 months ago
I think this might be related to the exploitation phase since the attacker is taking advantage of a specific flaw in the software.
upvoted 0 times
...
Lavonda
11 months ago
I feel pretty confident this is D. Exploitation. The attacker is exploiting a known security flaw to extract sensitive data, which is the core of the exploitation phase in the Cyber Kill Chain model. I think the other options don't quite fit the scenario described.
upvoted 0 times
...
Casie
11 months ago
Okay, let's see. The attacker is targeting a specific software vulnerability, so that rules out reconnaissance. And they're not just delivering a generic attack, they're customizing a worm. I'm leaning towards C. Weaponization, but I'm not 100% sure.
upvoted 0 times
...
Reena
11 months ago
Hmm, I'm a little unsure about this one. The question mentions the attacker tailoring a specific worm, so I'm wondering if that could also be considered weaponization. I'll have to think this through carefully.
upvoted 0 times
...
Carmen
11 months ago
I think this is a pretty straightforward question. The cyberattacker is exploiting a security flaw to extract passwords, so I'm pretty confident the answer is D. Exploitation.
upvoted 0 times
...
Leota
11 months ago
Hmm, this is a tricky one. I can see arguments for both exploitation and weaponization. I'll have to review the Cyber Kill Chain model details to make sure I'm understanding the distinctions correctly before answering.
upvoted 0 times
...
Lili
11 months ago
I'm a bit confused on this one. Is it the Ad Network? Or is that something different? I'll have to review my notes to make sure I understand the terminology correctly.
upvoted 0 times
...
Aleta
11 months ago
Wait, what about the default policy rule? Doesn't that take precedence over the custom rules? I'm not sure, but I think the answer might be D.
upvoted 0 times
...
Laticia
11 months ago
I'm leaning towards the internal audit team option. That could give the CEO the assurance he wants while keeping costs down. But I'll need to think about how to structure that team to maintain independence.
upvoted 0 times
...
Olen
11 months ago
Okay, I think I've got this. The prescription is for Timolol 0.25% eye drops, so the correct answer must be one of the options that mentions applying the drops to the eyes. I'll go with A since it says to apply one drop to both eyes twice daily.
upvoted 0 times
...
Dion
2 years ago
That's true, but weaponization seems more fitting since they are creating a weapon to attack the system.
upvoted 0 times
...
Malcom
2 years ago
I believe it could also fall under exploitation, as they are exploiting the security flaw.
upvoted 0 times
...
Lai
2 years ago
I agree with Dion, because the cyberattacker is tailoring a worm to extract passwords.
upvoted 0 times
...
Dion
2 years ago
I think the event belongs to weaponization.
upvoted 0 times
...
Lenora
2 years ago
I see your point, Rene. It could be categorized under both weaponization and exploitation.
upvoted 0 times
...
Rene
2 years ago
But wouldn't this also be considered exploitation since they are extracting passwords from the software?
upvoted 0 times
...
Stevie
2 years ago
I agree with Renea. The cyberattacker is creating a weaponized worm to exploit the security flaw.
upvoted 0 times
...
Renea
2 years ago
I think this event falls under the weaponization category.
upvoted 0 times
...
Leslee
2 years ago
I'm with Coletta on this one. Exploiting the vulnerability to extract the passwords feels like the exploitation stage to me. Though I do see the arguments for reconnaissance and weaponization as well.
upvoted 0 times
Elsa
2 years ago
Absolutely, cybersecurity is constantly evolving to combat these types of attacks.
upvoted 0 times
...
Karon
2 years ago
Yes, regardless of which stage it falls under, it's a serious security threat that needs to be addressed.
upvoted 0 times
...
Tamala
2 years ago
I think we can all agree that it involves multiple stages of the Cyber Kill Chain model.
upvoted 0 times
...
Johnna
2 years ago
I see your point. It's definitely a tricky situation to categorize.
upvoted 0 times
...
Allene
2 years ago
That's true, but I think the main goal is to extract the passwords, so exploitation makes more sense.
upvoted 0 times
...
Vincenza
2 years ago
But couldn't this also fall under weaponization? They are creating a specific worm tailored to exploit the flaw.
upvoted 0 times
...
Tegan
2 years ago
I agree with you, it does seem like exploitation to me as well.
upvoted 0 times
...
...
Marti
2 years ago
What about delivery? The attacker is delivering a tailored worm to the target, right? That's gotta be part of the delivery stage, isn't it?
upvoted 0 times
...
Coletta
2 years ago
I'm leaning more towards the exploitation stage. The attacker is directly exploiting a known vulnerability in the software to extract the saved passwords. That seems like a clear-cut case of exploitation to me.
upvoted 0 times
...
Diego
2 years ago
Hmm, this seems like a tricky question. The attacker is clearly gathering information about the software flaw, which makes me think it's in the reconnaissance stage of the Cyber Kill Chain. But then they're tailoring a specific attack, which could be considered weaponization.
upvoted 0 times
...

Save Cancel