Adarma Cyber Insiders Vol 3 Digital spreads FINAL 2 - Flipbook - Page 42
WHAT IS A CHOKE POINT?
A choke point is a concept adopted
from the real-life battlefield into
cybersecurity, where choke points
represent the locations where
multiple attack paths intersect
just before reaching critical assets.
But, to fully understand these
choke points in the context of
cybersecurity, we must first define
entities and critical assets.
42
42
|
ADARMA CYBER INSIDERS
Entities encompass endpoints, files,
folders, or cloud resources within
your environment that attackers can
exploit to progress along an attack
path towards valuable assets. While
critical assets refer to network
entities that hold significance for
the attacker or the organisation
itself, making them attractive
targets for attackers. Simply put, a
choke point is a key entity where
multiple attack paths converge
before reaching critical assets.
Attackers Can Only Target the
Parts of the System They Can
Access
Leveraging attack path mapping
solutions, we can determine what
route an attacker will take to move
laterally across the network to target
valuable assets. By outlining specific
cyber-attack paths and vectors, we
can enhance threat visibility.