200-201 Question 28
Single answerAn organization has recently fallen victim to a sophisticated cyberattack that exfiltrated sensitive customer data. During the investigation, it was discovered that the attacker acted with financial motivation, was well-funded, and targeted the organization over a prolonged period using advanced tools and techniques. Based on this scenario, which type of threat actor is most likely responsible for the attack?
- A
Script kiddie
- B
Nation-state actor
- C
Hacktivist
- D
Organized crime group
Show answer and explanation
Correct answer: D
Explanation
The attack described in the scenario matches the characteristics of an organized crime group. These groups are financially motivated, well-funded, and capable of executing advanced, targeted attacks over time. This distinguishes them from script kiddies, hacktivists, and nation-state actors, whose motivations and capabilities differ.
- A. Incorrect.
Script kiddies are typically inexperienced attackers who use pre-made tools and scripts to exploit vulnerabilities. They lack the sophistication and motivation to carry out prolonged, targeted attacks like the one described.
- B. Incorrect.
Nation-state actors have advanced capabilities and often conduct cyberattacks for political, military, or espionage purposes rather than financial gain. This does not align with the financial motivation described in the scenario.
- C. Incorrect.
Hacktivists are driven by ideological or political causes rather than financial incentives. Their attacks aim to promote their agenda, which is inconsistent with the described financial motivation.
- D. Correct.
Organized crime groups are financially motivated threat actors that are often well-funded and capable of conducting sophisticated, prolonged attacks to achieve their goals, aligning with the details provided in the scenario.