Umbra Wiki attack-pattern attack-pattern/CAPEC-620
Back to wiki

CAPEC-620 — Drop Encryption Level

provenance: imported · ATT&CK: T1600 · CWE: CWE-757

CAPEC-620: Drop Encryption Level

MITRE CAPEC attack pattern

Status Draft
Typical severity High
Likelihood of attack
Catalogue CAPEC 3.9 (2023-01-24)

Description

An attacker forces the encryption level to be lowered, thus enabling a successful attack against the encrypted data.

Where this sits in the chain

A finding maps to a weakness (CWE), a weakness is exploited by an attack pattern (CAPEC), and an attack pattern shows up in ATT&CK as observed adversary behaviour. This page is the middle hop.

Weaknesses exploited: CWE-757

ATT&CK techniques: T1600

Consequences

  • Access Control: Bypass Protection Mechanism

Source