exam questions

Exam CS0-003 All Questions

View all questions & answers for the CS0-003 exam

Exam CS0-003 topic 1 question 210 discussion

Actual exam question from CompTIA's CS0-003
Question #: 210
Topic #: 1
[All CS0-003 Questions]

Using open-source intelligence gathered from technical forums, a threat actor compiles and tests a malicious downloader to ensure it will not be detected by the victim organization's endpoint security protections. Which of the following stages of the Cyber Kill Chain best aligns with the threat actor's actions?

  • A. Delivery
  • B. Reconnaissance
  • C. Exploitation
  • D. Weaponization
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CyberPark17
Highly Voted 10 months, 1 week ago
Selected Answer: D
Correct answer is D. Threat actor already gathered (information) intelligence from technical forums which was part of reconnaissance. As a next stage - weaponization, the threat actor is testing and getting malware ready.
upvoted 12 times
...
section8santa
Highly Voted 1 year, 1 month ago
Selected Answer: D
D. Weaponization. Explanation: Weaponization is the stage of the Cyber Kill Chain where an attacker creates or modifies a weapon (malware) to deliver it to the target system. In this scenario, the threat actor compiles and tests a malicious downloader to ensure it will not be detected by the victim organization's endpoint security protections. This involves the preparation and testing of the malware to ensure it is effective at achieving the attacker's objectives without being detected by security defenses. While Reconnaissance (B) involves gathering information about the target organization, and Exploitation (C) involves taking advantage of vulnerabilities to gain unauthorized access, the described actions focus on the creation and testing of the malicious downloader, which aligns more closely with the Weaponization stage.
upvoted 6 times
...
f90ecff
Most Recent 1 week, 5 days ago
Selected Answer: D
Weaponization = Build and test the malware before delivering it.
upvoted 1 times
...
c83335b
11 months, 2 weeks ago
Selected Answer: B
The attacker is making sure the weapon is not detected when delivery phase happens B is the answer
upvoted 1 times
...
Eduardoo7
1 year, 1 month ago
Selected Answer: D
i will go for d
upvoted 1 times
...
Cyberjerry
1 year, 1 month ago
Selected Answer: B
B. Reconnaissance The actions of gathering open-source intelligence from technical forums align most closely with the Reconnaissance stage of the Cyber Kill Chain. During this stage, threat actors gather information about the target organization, including its security measures, to plan their attack and increase the chances of success. In this scenario, the threat actor is gathering intelligence to understand the victim organization's endpoint security protections and ensure the effectiveness of their malicious downloader.
upvoted 1 times
Mehe323
11 months, 3 weeks ago
You got that from chatGPT, try not to rely too much on that. The question indicates that the reconnaissance stage is already done: 'Using open-source intelligence gathered from technical forums, a threat actor compiles and tests a malicious downloader.'
upvoted 2 times
...
...
m025
1 year, 1 month ago
Selected Answer: D
It's before the attack while it is creating his own weapons
upvoted 1 times
...
ce2acef
1 year, 1 month ago
i could be wrong but the question kind of makes it sound like this is happening before the attack so would it be B. Reconnaissance?
upvoted 2 times
3be4f49
1 year, 1 month ago
Weaponization also happens before the attack is carried out. Here, he is not gathering information on his target, he's already using said information. Now, he's building a tool to carry out the attack: weaponization.
upvoted 5 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago