Terminology Index
Glossary
2953 terms
R31
Root Cause and Access Path
Root cause and access path analysis separates initiating conditions, exploited weaknesses, identity or execution routes, privilege expansion, persistence, command paths, and organizational contributors.
It avoids reducing a multi-condition incident to a single event label such as phishing.
Introduced in: Incident Response Operations
Examples
- Trace a malicious login through weak recovery controls and excessive mailbox privileges
No related terms linked yet.
S1
