Analysis of the Cyber Kill Chain Model Focused on Computer Security Through Virtualized Controlled Processes
摘要
The term Cyber Kill Chain refers to the seven stages that a computer criminal must go through to achieve an effective attack, that is, it is a model that determines what cybercriminals must complete to achieve the objective. Therefore, the opportunity to stop them at any of these stages means breaking the attack chain. Its importance arises from the fact that currently the growth in the scale and complexity of cyberattacks directed at the data of organizations and people has registered an accelerated increase, with very elaborate patterns that have begun to be called Advanced Persistent Threat (APT). According to an analysis corresponding to 2023, the global average cost of data breach was $4.45 million, representing an increase of 15% in 3 years. Therefore, understanding each of these phases is essential to develop computer security programs, because defense teams will be able to anticipate the activities of attackers, taking effective measures to prevent, discover or minimize attacks in each phase. Consequently, applying knowledge of the various stages of a cyberattack allows the infrastructure to be prepared to counteract data breaches in the widest possible range of tools, means and controlled processes applied by users, both at a personal and business level.