Extended Cyber Kill Chain for AI-Era Threats
The Lockheed Martin Cyber Kill Chain has been updated to address threats posed by AI and LLMs. This new framework introduces a pre-attack stage for model supply chain compromise and incorporates AI-specific sub-techniques across the original stages. Additionally, the Actions on Objectives stage has been expanded into three sub-stages to better reflect the complexities of AI-driven attacks.
- ▪The updated Cyber Kill Chain includes a new pre-attack stage focused on model supply chain compromise.
- ▪AI-specific sub-techniques have been added to each of the original seven stages of the kill chain.
- ▪The Actions on Objectives stage has been split into three sub-stages: classical data exfiltration, model extraction, and agentic pivot.
Opening excerpt (first ~120 words) tap to expand
Extended Cyber Kill Chain for AI-Era Threats An update to the Lockheed Martin Cyber Kill Chain for defenders working against LLM and agentic AI attacks. Adds a pre-attack stage for model supply chain compromise. Adds AI-specific sub-techniques to each of the original seven stages. Splits the Actions on Objectives stage into three peer sub-stages: classical data exfiltration, model extraction, and agentic pivot. Author: Gourav Nagar Version: 1.0 Date: May 19, 2026 Repository: https://github.com/gouravnagar-infosec/ai-kill-chain Cite as: Nagar, G. (2026). Extended Cyber Kill Chain for AI-Era Threats (Version 1.0).
…
Excerpt limited to ~120 words for fair-use compliance. The full article is at GitHub.