CAPEC 攻击模式
CAPEC 基础字段和已提取关联查询。
| CAPEC ID | 名称 | 抽象级别 | 状态 | ATT&CK 映射数 | 操作 |
|---|---|---|---|---|---|
| CAPEC-67 | String Format Overflow in syslog() | Detailed | Draft | 0 | |
| CAPEC-670 | Software Development Tools Maliciously Altered | Detailed | Draft | 2 | |
| CAPEC-671 | Requirements for ASIC Functionality Maliciously Altered | Detailed | Draft | 1 | |
| CAPEC-672 | Malicious Code Implanted During Chip Programming | Detailed | Draft | 1 | |
| CAPEC-673 | Developer Signing Maliciously Altered Software | Detailed | Draft | 1 | |
| CAPEC-674 | Design for FPGA Maliciously Altered | Detailed | Stable | 1 | |
| CAPEC-675 | Retrieve Data from Decommissioned Devices | Standard | Stable | 1 | |
| CAPEC-676 | NoSQL Injection | Standard | Stable | 0 | |
| CAPEC-677 | Server Motherboard Compromise | Detailed | Draft | 1 | |
| CAPEC-678 | System Build Data Maliciously Altered | Detailed | Draft | 1 | |
| CAPEC-679 | Exploitation of Improperly Configured or Implemented Memory Protections | Detailed | Draft | 0 | |
| CAPEC-68 | Subvert Code-signing Facilities | Standard | Draft | 1 | |
| CAPEC-680 | Exploitation of Improperly Controlled Registers | Detailed | Draft | 0 | |
| CAPEC-681 | Exploitation of Improperly Controlled Hardware Security Identifiers | Detailed | Draft | 0 | |
| CAPEC-682 | Exploitation of Firmware or ROM Code with Unpatchable Vulnerabilities | Standard | Draft | 0 | |
| CAPEC-69 | Target Programs with Elevated Privileges | Standard | Draft | 0 | |
| CAPEC-690 | Metadata Spoofing | Meta | Stable | 0 | |
| CAPEC-691 | Spoof Open-Source Software Metadata | Standard | Stable | 2 | |
| CAPEC-692 | Spoof Version Control System Commit Metadata | Detailed | Stable | 0 | |
| CAPEC-693 | StarJacking | Detailed | Stable | 0 |