Learn the seven steps of the Cyber Kill Chain.

This site explains the basics of the seven steps of the Cyber Kill Chain for students and professionals new to the cybersecurity space.

An introduction to the basic steps of a cyberattack

Many new to the field of cybersecurity think of recon, exploitation, and command and control as isolated terms. This site organizes them into a coherent framework so readers can understand how each stage dovetails into the next and how defenders can prevent attackers from reaching the next step.

Cyber Kill Chain overview diagram showing the progression from recon to actions on objectives.
Stage 0

Recon and Payload Design

Information gathering to advance the attacker's understanding of their target. Reveals entry points around which the attackers design their payload, i.e. what they wish to use to attack their target.

Stage 1

Delivery, Exploitation, and Execution

How an attacker sends the payload they designed to their target and triggers it once received by the target.

Stage 2

Command and Control (C2) and Further Actions

The attacker runs commands after gaining control, establishes control over the target, and moves towards objectives.

Steps of a Cyberattack

0Recon
1Weaponization
2Delivery
3Exploitation
4Installation
5Command and Control
6Actions on Objectives

Ethical Disclaimer

This project is in no way meant to provide attack instructions. We want to help people new to the cybersecurity space recognize how adversaries think so they can better detect, prevent, and respond to malicious activity.