Day 5: Risk Management & Threat Actor Profiling Explained!
HELLO FRIENDS
WELCOME TO MY CYPHER LOG
In this blog I am going to share about risk management and threat actor profiling which I have learned today in the series of daily learning cybersecurity and today is the 5th day. In this blog it's full of risk and how can we manage it when there is risk and also about the threat actors who tend to attack system and database, let's jump into our interesting topic.
The risk management
Actually risk in cyber security can't be considered a normal feeling of danger because it can lead to biggest damage into our systems more than we thought, actually we can't consider it just a risk because it's basically a calculated metric in this field and also it has a formula too,
Risk = threat x vulnerability x impact
By seeing this you can easily figure out how risk can happen let me explain it properly.
Asset
Asset is basically a more important thing that we want to protect, we can take the gold jewels as an example for this, we all try to protect that from thieves because it's an asset for us same as this organisation protects their server and database because this is an asset to them.
Vulnerability
Vulnerability is also called as weaknesses, let's connect this with an impact's example as we have an asset we need to have our locker strong where we kept our asset if it's not then that is the vulnerability.
Threat
Threat is a danger which can exploit the vulnerability. We can take the same examples which we have seen in the last two, if our locker is weak and also a strange man roaming around our streets suspicious if he is a burglar he can easily open the locker where we kept our asset this is the threat.
Hackers are the threat for system which vulnerability.
Impact
Impact is, if there is an attack happened and we have loss our asset then that is the impact from the attack.
Let's see next topic which is threat actor
Threat actor is nothing but who executing an attack in our systems, in simple words basically a hacker. But it's not as simple as we think because it had many variations which is making an impact based on their skill levels.
Script kiddies
It happens if amateur kids like a beginner who wants to do fun with their skill or can be any thief who needs small money, they will use tools like hacking tools in internet for their hacking.
Hacktivist
It is the next level, those who have medium to high level skills basically It can be an ideologically motivated groups and their motive will be political, social, religious change and they want send a message. They would use tactics like website defacement, ddos attack and leaking documents to achieve their goal.
Organized crime
It must be a professional criminal gangs who would operating it like an corporation and their skill will be very high and their motive must be money, they tends to use tactics like ransomware and banking Trojans.
Nation sate actors - APTs
Actually it is a hackers who are funded by government to stealing secrets of other countries or to disrupting critical infrastructure of enemy countries, their skill must be elite and also they have unlimited budget to do their work because of government funds.
Their tactics would be hiding in network for years without being detected.
And last but not least,
Insiders
They are the most dangerous for the organisation more than the threat actors whom we have seen before because they definitely know the organisation's secrets and also have legitimate access so it must be easy for them to attack the organisations server and they will be a current working employee or an former employee.
So that's all guys it actually interesting right let's see in another interesting topics.
If you want to study with study materials you get through this site.

Comments
Post a Comment