Cyber Kill Chain

A kill chain is used to describe the various stages of a cyber attack as it pertains to network security. The actual model, the Cyber Kill Chain framework, was developed by Lockheed Martin and is used for identification and prevention of cyber intrusions.

The actual steps in a kill chain trace the typical stages of a cyber attack from early reconnaissance to completion where the intruder achieves the cyber intrusion. Analysts use the chain to detect and prevent advanced persistent threats (APT).

The 7 steps of The Cyber Kill Chain

According to Lockheed Martin’s APT documentation, the seven steps of the Cyber Kill Chain include the following:

  1. Reconnaissance – Example: harvest email accounts
  2. Weaponization – Example: couple an exploit with a backdoor
  3. Delivery – Example: deliver bundle via email or Web
  4. Exploitation – Example: exploit a vulnerability to execute code
  5. Installation – Example: Install malware on target
  6. Command and Control – Example: Command channel for remote manipulation
  7. Actions on Objectives – Example: Access for intruder to accomplish goal

Cyber Kill Chain

Image Source: Seven Ways to Apply the Cyber Kill Chain; Lockheed Martin Corporation.

Cyber Kill Chain is a registered trademark of Lockheed Martin Corporation.

Vangie Beal
Vangie Beal
Vangie Beal is a freelance business and technology writer covering Internet technologies and online business since the late '90s.

Related Articles

Human Resources Management System

A Human Resources Management System (HRMS) is a software application that supports many functions of a company's Human Resources department, including benefits administration, payroll,...

How To Defend Yourself Against Identity Theft

Almost every worldwide government agency responsible for identity theft issues will tell you the same thing: The first step to fighting identity theft is...

Infographic

An infographic is a visual representation of information or data. It combines the words information and graphic and includes a collection of imagery, charts,...

Phishing

What is phishing? Phishing is a type of cybercrime in which victims are contacted by email, telephone, or text message by an attacker posing as...

ScalaHosting

ScalaHosting is a leading managed hosting provider that offers secure, scalable, and affordable...

HRIS

Human resources information system (HRIS) solutions help businesses manage multiple facets of their...

Best Managed Service Providers...

In today's business world, managed services are more critical than ever. They can...