← Back to catalogue
Research draft

cyberattack

vr.tr.cyberattack · ACT.ACT

Let an agent explain cyberattacks and their categories at a conceptual level, support defence, detection and incident response, describe legal and reporting frameworks, and decline operational attack detail.

Thing Registry Activities and processes

Research draft, second pass

A second pass drafted this model: the structure a model of this thing needs, and what is known about it in the world. The line under this one says how the second half was obtained - researched against sources, or recalled without web access, in which case nothing here was read anywhere and every claim is a lead to verify. Unreviewed either way.

written by Claude from model knowledge without web access - no source was read, every claim is a lead to verify

Researched by: Claude

Purpose and description

Let an agent explain cyberattacks and their categories at a conceptual level, support defence, detection and incident response, describe legal and reporting frameworks, and decline operational attack detail.

A deliberate attempt to compromise the confidentiality, integrity or availability of computer systems, networks or data, through techniques such as malware, phishing, exploitation of vulnerabilities, denial of service, credential and account attacks, DNS hijacking, and attacks on AI systems such as prompt injection; cyberattacks are studied in cybersecurity, classified in adversary technique frameworks, addressed by defences and incident response, and are criminal in most jurisdictions, and this entry is framed defensively without operational detail.

What it is for: Deliberate attacks on computer systems.

It can be explain categories conceptually; support defence and response; describe legal frameworks; decline operational detail.

Distinguishing features

Malicious intent

Technique categories

Defended and responded to

Criminalised

What it looks like

Not physical; malicious activity in systems and networks.

How it is recognised

Deliberate compromise of systems or data

Many techniques

Accidental outages and bugs are not attacks

Related models

is a kind of - category

attack

is a kind of - category

cyber incident

is related to - vulnerabilities exploited

software bug

is related to - incident response

incident

In practice

Families and kinds

malware and ransomware attacks

phishing and social engineering

vulnerability exploitation and zero-click attacks

denial of service and infrastructure attacks

attacks on AI systems such as prompt injection

Standards and regulation

Cybercrime laws and international conventions

Security standards and incident reporting rules

Adversary technique frameworks for defenders

Failure modes and hazards

Providing attack instructions

Data breaches and service loss

Misattribution of attacks

Also called

exploitzero-click attackaccount pre-hijackingDNS hijackingnull dereferencingprompt injectionreturn-to-libc attackcross-site request forgeryXML external entity attackprivilege escalationBadUSBreturn-oriented programmingcredential stuffingvideo game exploitbrowser exploitDMA attackserver-side request forgerysession hijackingkiller pokeHTTP request smugglingJailbreakPlayStation JailbreakSIM lock disablingconfused deputy problemZoombombingsupply chain attackcache poisoningreplay attackdusting attackOT attackransomware attackspoofing attackfabrication attackeclipse attackAI training data poisoningcyber-physical attack2024 U.S. internet service provider hackhijackingAI-driven cyber attackman-on-the-side attack

+31

Where this came from

wikidata · CC0 1.0

Drafted structure

Bundle to layer to finding to question, as the second pass will find it: 4 bundles · 8 layers · 8 findings · 16 questions.

Understand What cyberattacks are.

Concepts.

Categories

Categories of attack.

Categories

Categories.

  1. What are the main categories of cyberattack, and how do frameworks classify adversary techniques for defenders? provenance
  2. Is the request seeking operational attack detail, which must be declined? boundary

AI

Attacks on AI systems.

AI

AI systems.

  1. What are prompt injection and other attacks on AI systems, and how are they mitigated, according to security researchers? provenance
  2. Which entry fits AI security? action
Defend Defence and response.

Practice.

Defence

Defensive measures.

Defence

Defence.

  1. How can organisations and individuals reduce risk through patching, authentication, backups, training and monitoring? provenance
  2. Which entry fits a specific control? action

Response

Incident response.

Response

Response.

  1. What should be done during and after a suspected attack, and who should be notified? provenance
  2. Is an attack in progress now, requiring incident response and authorities? boundary
Law Law and reporting.

Law.

Legal

Legal frameworks.

Legal

Legal.

  1. How are cyberattacks criminalised and reported here, and which authorities investigate? provenance
  2. Which entry fits cybercrime law? action

Attribution

Attribution and geopolitics.

Attribution

Attribution.

  1. How are attacks attributed to actors, and how should contested attributions be presented? boundary
  2. Is the presentation neutral? boundary
Learn History and teaching.

Education.

History

Notable attacks.

History

History.

  1. Which cyberattacks are historically notable, and what lessons do security bodies draw? provenance
  2. Which references are standard? provenance

Teach

Teaching.

Teach

Teaching.

  1. How can cybersecurity awareness be taught defensively? action
  2. Which misconceptions arise? provenance

What the second pass must settle

  • Should each attack category be a separate entry?
  • How should security frameworks be linked?
  • How should reporting channels be linked?