Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português
  • Home
  • Resources
  • Blog
  • Stopping the Cyber Attack Chain with Privilege and Vulnerability Management current page
Link copied

Stopping the Cyber Attack Chain with Privilege and Vulnerability Management

Jun 22, 2017
Author:
Slang
Scott Lang
Sr. Director, Product Marketing at BeyondTrust
Blog banner default
Stopping the Cyber Attack Chain with Privilege and Vulnerability Management
Slang
Scott Lang
Sr. Director, Product Marketing at BeyondTrust

blog-the-role-of-integrated-privileged.jpg

The Cyber Attack Chain (or Kill Chain) is a common reference for illustrating the steps involved in an externally-driven cyber attack. After witnessing first-hand so many data breaches that happen as a result of these methods, we have developed a summary version that you can use as you make the case to better protect your important data and assets. Let’s begin by reviewing the steps in the Cyber Attack Chain, then I will define six steps you can take today to reduce your attack surface.

Steps in the Cyber Attack Chain

Based on our experience, externally-driven data breaches start when an attacker exploits asset vulnerabilities. This can be done via drive-by downloads, phishing attacks or even direct hacking attempts. (The Verizon Data Brach Investigations Report provides ample data on the frequency of such attacks, but 75% of attacks come from outsiders.)

Next, once inside the network, the attacker hijacks privileges or leverages stolen or weak passwords. In fact, 80% of breaches involved misused privileged accounts. Once the attacker successfully becomes an insider, they can leverage those privileges and passwords to move laterally and exploit other resources to achieve their ultimate objective – your data. What’s scarier than that, is it takes an average of 256 days to realize you’ve been breached!

Taking Control: How Integrated Privileged Access Management and Vulnerability Management Mitigate the Risks from Cyber Attacks

How can an organization prevent an attacker from exploiting the perimeter through a vulnerability, prevent hijacking and privilege escalation, and limit lateral movement? Start with these basic six steps:

pbol-datasheet-diagram-attacker.png

1) Identify and remediate vulnerabilities with better prioritization of risks. How well are you able to

prioritize vulnerabilities, or correlate those vulnerabilities against other threats in the wild? Integratingmultiple threat inputs into a single system for prioritization and “heat mapping” is the one way.

2) Limit access to sensitive systems and data by leveraging vulnerability data to make decisions on granting privileges to assets or applications.

3) Enforce least privilege to prevent client-side attacks and reduce default user privileges to contain potential account hijackers. Basically, stopping an attacker before he moves laterally.

4) Eliminate shared accounts and password sharing. Uncontrolled accounts are involved in 8 out of every 10 data breaches. Want a fast way to reduce 80% of that risk? Store all your enterprise passwords in a single, secure store that requires a check-in, check-out process and provides a secure enclave for third-parties.

5) Monitor all privileged activities for security and accountability. Logging must be done for compliance purposes, but session monitoring also adds additional benefits – indexed recordings provide keystroke-level detail on who did what and when, ensuring that you have a full audit trail for the auditors.

6) Tie it all together by correlating and analyzing user and asset behavior to identify in-process attacks. This is where the value of full-integrated privileged access management and vulnerability management comes into play. This combination of behavioral analytics, vulnerability and malware intelligence, user and security data from best-of-breed security solutions allows you to out-maneuver attackers and stop data breaches.

Putting it all Together

The real value of a full-integrated solution to address every step of the Cyber Attack Chain is that there are no gaps, and that you can leverage vulnerability and external threat data to make privilege decisions. All of this reduces your attack surfaces and risks.

Disrupting the Cyber Attack Chain with BeyondTrust

Want more information on how BeyondTrust can help disrupt the Cyber Attack Chain? Check out the infographic now or request a demo today!

Latest Posts
  • 14 Password Management Best Practices
    May 28, 2026 14 Password Management Best Practices
    Blog
    12m
  • A Security Researcher’s Guide to Understanding Copilot Studio AI Agents
    May 26, 2026 A Security Researcher’s Guide to Understanding Copilot Studio AI Agents
    Blog
    3m
  • How to Secure Cloud-Native Infrastructure at Scale and Speed: A Conversation with Madhu Adireddi
    May 21, 2026 How to Secure Cloud-Native Infrastructure at Scale and Speed: A Conversation with Madhu Adireddi
    Blog
    5m
  • Cybersecurity as a Boardroom Priority for Major African TelCos
    May 12, 2026 Cybersecurity as a Boardroom Priority for Major African TelCos
    Blog
    8m
  • Geopolitics and Cybersecurity: Why Attackers Go After Identities and Privileged Access First
    May 11, 2026 Geopolitics and Cybersecurity: Why Attackers Go After Identities and Privileged Access First
    Blog
    4m
Related
  • Governance, Risk, and Compliance- Cogs of Security Clock
    Oct 5, 2011 Governance, Risk, and Compliance- Cogs of Security Clock
    Blog
    1m
  • Defending Against Token-Based Threats
    Jun 30, 2023 Defending Against Token-Based Threats
    Blog
    1m
Share this Article
  • Link
Stay up to Date
Get the latest news, ideas, and tactics from BeyondTrust. You may unsubscribe at any time.

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.