Terminology Index

Glossary

2953 terms

Open concept maps
R
31

Root Cause and Access Path

Root cause and access path analysis separates initiating conditions, exploited weaknesses, identity or execution routes, privilege expansion, persistence, command paths, and organizational contributors.

It avoids reducing a multi-condition incident to a single event label such as phishing.

Introduced in: Incident Response Operations

Examples

  • Trace a malicious login through weak recovery controls and excessive mailbox privileges

No related terms linked yet.

S
1