Backdoor Access

From BCMpedia. A Wiki Glossary for Business Continuity Management (BCM) and Disaster Recovery (DR).
Revision as of 03:31, 3 November 2020 by Kalaivani (talk | contribs)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to navigation Jump to search
1. Backdoor access refers to cyber criminals utilising backdoor programs to secure remote access to computers or systems by bypassing normal authentication or encryption. Once backdoor access is granted, the compromise activities begin.

Related Term: Configuration Exploitation







(Source: Business Continuity Management Institute - BCM Institute)

 

2. Backdoors, along with C2 functionalities, are one of the most common footholds into internal networks. Once threat actors have a foot in the backdoor, they begin their post-compromise activities. Through this access vector, threat actors can now drop additional malware to perform a myriad of tasks, including capturing keystrokes, that lead to compromised accounts, escalated privileges, and movement to other areas in the victim’s network, as well as establishing exfiltration points and methods for sensitive data.
Source: (Verizon, 2016)