Killchain Overview#
The “killchain” is a generic term for the process that an attacker follows to penetrate a system. Each step follows on from the last in a linear order and breaking a link in the chain breaks the attack… at least in theory. Either way, it is a popular concept and improving any of the links from the blue side can only be helpful.
“Killchain” is a generic term, but there are standard models that can be used:
“The Cyber Killchain”, by Lockhead Martin
“The Unified Kill Chain”, by Paul Pols
This section is based around a simplified Killchain that bas been used in TryHackMe. The sections are:
Information Gathering
Ennumeration / Scanning
Exploitation
Privilege Escalation
Post Exploitation
Useful Links#
infosecn1nja/Red-Teaming-Toolkit
https://securitytrails.com/blog/osint-tools