cyberattack
Let an agent explain cyberattacks and their categories at a conceptual level, support defence, detection and incident response, describe legal and reporting frameworks, and decline operational attack detail.
Research draft, second pass
A second pass drafted this model: the structure a model of this thing needs, and what is known about it in the world. The line under this one says how the second half was obtained - researched against sources, or recalled without web access, in which case nothing here was read anywhere and every claim is a lead to verify. Unreviewed either way.
written by Claude from model knowledge without web access - no source was read, every claim is a lead to verify
Researched by: Claude
Purpose and description
Let an agent explain cyberattacks and their categories at a conceptual level, support defence, detection and incident response, describe legal and reporting frameworks, and decline operational attack detail.
A deliberate attempt to compromise the confidentiality, integrity or availability of computer systems, networks or data, through techniques such as malware, phishing, exploitation of vulnerabilities, denial of service, credential and account attacks, DNS hijacking, and attacks on AI systems such as prompt injection; cyberattacks are studied in cybersecurity, classified in adversary technique frameworks, addressed by defences and incident response, and are criminal in most jurisdictions, and this entry is framed defensively without operational detail.
What it is for: Deliberate attacks on computer systems.
It can be explain categories conceptually; support defence and response; describe legal frameworks; decline operational detail.
Distinguishing features
Malicious intent
Technique categories
Defended and responded to
Criminalised
What it looks like
Not physical; malicious activity in systems and networks.
How it is recognised
Deliberate compromise of systems or data
Many techniques
Accidental outages and bugs are not attacks
Related models
is a kind of - category
is a kind of - category
is related to - vulnerabilities exploited
is related to - incident response
In practice
Families and kinds
malware and ransomware attacks
phishing and social engineering
vulnerability exploitation and zero-click attacks
denial of service and infrastructure attacks
attacks on AI systems such as prompt injection
Standards and regulation
Cybercrime laws and international conventions
Security standards and incident reporting rules
Adversary technique frameworks for defenders
Failure modes and hazards
Providing attack instructions
Data breaches and service loss
Misattribution of attacks
Also called
+31
Where this came from
wikidata · CC0 1.0
Drafted structure
Bundle to layer to finding to question, as the second pass will find it: 4 bundles · 8 layers · 8 findings · 16 questions.
Understand What cyberattacks are.
Concepts.
Categories
Categories of attack.
Categories
Categories.
- What are the main categories of cyberattack, and how do frameworks classify adversary techniques for defenders? provenance
- Is the request seeking operational attack detail, which must be declined? boundary
AI
Attacks on AI systems.
AI
AI systems.
- What are prompt injection and other attacks on AI systems, and how are they mitigated, according to security researchers? provenance
- Which entry fits AI security? action
Defend Defence and response.
Practice.
Defence
Defensive measures.
Defence
Defence.
- How can organisations and individuals reduce risk through patching, authentication, backups, training and monitoring? provenance
- Which entry fits a specific control? action
Response
Incident response.
Response
Response.
- What should be done during and after a suspected attack, and who should be notified? provenance
- Is an attack in progress now, requiring incident response and authorities? boundary
Law Law and reporting.
Law.
Legal
Legal frameworks.
Legal
Legal.
- How are cyberattacks criminalised and reported here, and which authorities investigate? provenance
- Which entry fits cybercrime law? action
Attribution
Attribution and geopolitics.
Attribution
Attribution.
- How are attacks attributed to actors, and how should contested attributions be presented? boundary
- Is the presentation neutral? boundary
Learn History and teaching.
Education.
History
Notable attacks.
History
History.
- Which cyberattacks are historically notable, and what lessons do security bodies draw? provenance
- Which references are standard? provenance
Teach
Teaching.
Teach
Teaching.
- How can cybersecurity awareness be taught defensively? action
- Which misconceptions arise? provenance
What the second pass must settle
- Should each attack category be a separate entry?
- How should security frameworks be linked?
- How should reporting channels be linked?