Umbra Wiki attack-pattern attack-pattern/CAPEC-681
Back to wiki

CAPEC-681 — Exploitation of Improperly Controlled Hardware Security Identifiers

provenance: imported · CWE: CWE-1259 CWE-1267 CWE-1270 CWE-1294 CWE-1302

CAPEC-681: Exploitation of Improperly Controlled Hardware Security Identifiers

MITRE CAPEC attack pattern

Status Draft
Typical severity Very High
Likelihood of attack Medium
Catalogue CAPEC 3.9 (2023-01-24)

Description

An adversary takes advantage of missing or incorrectly configured security identifiers (e.g., tokens), which are used for access control within a System-on-Chip (SoC), to read/write data or execute a given action.

Where this sits in the chain

A finding maps to a weakness (CWE), a weakness is exploited by an attack pattern (CAPEC), and an attack pattern shows up in ATT&CK as observed adversary behaviour. This page is the middle hop.

Weaknesses exploited: CWE-1259, CWE-1267, CWE-1270, CWE-1294, CWE-1302

Prerequisites

  • Awareness of the hardware being leveraged.
  • Access to the hardware being leveraged.

Skills required

  • Medium: Ability to execute actions within the SoC.
  • High: Intricate knowledge of the identifiers being utilized.

Consequences

  • Integrity: Modify Data
  • Confidentiality: Read Data
  • Confidentiality, Access Control, Authorization: Gain Privileges

Mitigations

  • Review generation of security identifiers for design inconsistencies and common weaknesses.
  • Review security identifier decoders for design inconsistencies and common weaknesses.
  • Test security identifier definition, access, and programming flow in both pre-silicon and post-silicon environments.

Source