Umbra Wiki attack-pattern attack-pattern/CAPEC-440
Back to wiki

CAPEC-440 — Hardware Integrity Attack

provenance: imported · ATT&CK: T1195.003 T1200

CAPEC-440: Hardware Integrity Attack

MITRE CAPEC attack pattern

Status Stable
Typical severity High
Likelihood of attack Low
Catalogue CAPEC 3.9 (2023-01-24)

Description

An adversary exploits a weakness in the system maintenance process and causes a change to be made to a technology, product, component, or sub-component or a new one installed during its deployed use at the victim location for the purpose of carrying out an attack.

Where this sits in the chain

A finding maps to a weakness (CWE), a weakness is exploited by an attack pattern (CAPEC), and an attack pattern shows up in ATT&CK as observed adversary behaviour. This page is the middle hop.

ATT&CK techniques: T1195.003, T1200

Prerequisites

  • Influence over the deployed system at a victim location.

Consequences

  • Integrity: Execute Unauthorized Commands

Source