Umbra Wiki attack-pattern attack-pattern/CAPEC-185
Back to wiki

CAPEC-185 — Malicious Software Download

provenance: imported · CWE: CWE-494

CAPEC-185: Malicious Software Download

MITRE CAPEC attack pattern

Status Draft
Typical severity Very High
Likelihood of attack
Catalogue CAPEC 3.9 (2023-01-24)

Description

An attacker uses deceptive methods to cause a user or an automated process to download and install dangerous code that originates from an attacker controlled source. There are several variations to this strategy of attack.

Where this sits in the chain

A finding maps to a weakness (CWE), a weakness is exploited by an attack pattern (CAPEC), and an attack pattern shows up in ATT&CK as observed adversary behaviour. This page is the middle hop.

Weaknesses exploited: CWE-494

Source