CAPEC 攻击模式
CAPEC 基础字段和已提取关联查询。
| CAPEC ID | 名称 | 抽象级别 | 状态 | ATT&CK 映射数 | 操作 |
|---|---|---|---|---|---|
| CAPEC-178 | Cross-Site Flashing | Detailed | Draft | 0 | |
| CAPEC-179 | Calling Micro-Services Directly | Standard | Draft | 0 | |
| CAPEC-18 | XSS Targeting Non-Script Elements | Detailed | Draft | 0 | |
| CAPEC-180 | Exploiting Incorrectly Configured Access Control Security Levels | Standard | Draft | 1 | |
| CAPEC-181 | Flash File Overlay | Detailed | Draft | 0 | |
| CAPEC-182 | Flash Injection | Standard | Draft | 0 | |
| CAPEC-183 | IMAP/SMTP Command Injection | Standard | Draft | 0 | |
| CAPEC-184 | Software Integrity Attack | Meta | Draft | 0 | |
| CAPEC-185 | Malicious Software Download | Standard | Draft | 0 | |
| CAPEC-186 | Malicious Software Update | Standard | Draft | 1 | |
| CAPEC-187 | Malicious Automated Software Update via Redirection | Detailed | Draft | 1 | |
| CAPEC-188 | Reverse Engineering | Meta | Stable | 0 | |
| CAPEC-189 | Black Box Reverse Engineering | Standard | Draft | 0 | |
| CAPEC-19 | Embedding Scripts within Scripts | Standard | Stable | 3 | |
| CAPEC-190 | Reverse Engineer an Executable to Expose Assumed Hidden Functionality | Detailed | Draft | 0 | |
| CAPEC-191 | Read Sensitive Constants Within an Executable | Detailed | Draft | 1 | |
| CAPEC-192 | Protocol Analysis | Meta | Stable | 0 | |
| CAPEC-193 | PHP Remote File Inclusion | Detailed | Draft | 0 | |
| CAPEC-194 | Fake the Source of Data | Standard | Stable | 0 | |
| CAPEC-195 | Principal Spoof | Standard | Draft | 0 |