解析网络杀伤链
原名:analyzing-cyber-kill-chain
分析针对洛克希德·马丁网络杀伤链的入侵活动。
- 分类
- 数据分析
- 版本
- v1.0.0
- 作者
- 弈韬(@ra1nzzz)
- 下载
- 0
- 收藏
- 0
- 发布
- 2026-08-18
- 更新
- 2026-08-25
- TRACE 评分
- 3.4 / 5
内容概览
Use this skill when: - Conducting post-incident analysis to determine how far an adversary progressed through an attack sequence - Designing layered defensive controls with the goal of interrupting attacks at the earliest possible phase - Producing threat intelligence reports that communicate attack progression to non-technical stakeholders Do not use this skill as a standalone framework — combine with MITRE ATT&CK for technique-level granularity beyond what the 7-phase kill chain provides. - Complete incident timeline with forensic artifacts mapped to specific adversary actions - MITRE ATT&CK Enterprise matrix for technique-level mapping within each kill chain phase - Access to threat intelligence on the suspected adversary group's typical kill chain progression - Post-incident report or IR timeline from responding team The Lockheed Martin Cyber Kill Chain consists of seven phases. Map …