Delivery
Delivery delves into the intricate process through which cyber adversaries transmit malicious payloads to their intended targets. This phase is pivotal within the cyber kill chain, transitioning from reconnaissance and weaponization to active engagement with the victim. The delivery phase is a critical step in the cyber kill chain, where cybercriminals put their weaponized payloads into action by delivering them to their intended targets. This phase encompasses various tactics, techniques, and procedures (TTPs) employed by adversaries to deliver malicious software or exploits to unsuspecting victims. Standard delivery methods include phishing emails, malicious websites, drive-by downloads, and other social engineering strategies.
Real-world incidents, such as the SolarWinds supply chain attack and the Colonial Pipeline ransomware attack, highlight the devastating impact of successful delivery-based cyberattacks. This chapter delves into these case studies, examining the...