Dark Mode

Settings

Capec-441 Detail

Malicious Logic Insertion

Meta Software Hardware Likelihood: Medium Typical Severity: High

Children: 442 452 456

Threats: T79 T287 T337 T391 T406

Description

An adversary installs or adds malicious logic (also known as malware) into a seemingly benign component of a fielded system. This logic is often hidden from the user of the system and works behind the scenes to achieve negative impacts. With the proliferation of mass digital storage and inexpensive multimedia devices, Bluetooth and 802.11 support, new attack vectors for spreading malware are emerging for things we once thought of as innocuous greeting cards, picture frames, or digital projectors. This pattern of attack focuses on systems already fielded and used in operation as opposed to systems and their components that are still under development and part of the supply chain.

Not present

External ID Source Link Description
CAPEC-441 capec https://capec.mitre.org/data/definitions/441.html
CWE-284 cwe http://cwe.mitre.org/data/definitions/284.html

Not present

  1. Access to the component currently deployed at a victim location.

Not present

Not present

Authorization
Execute Unauthorized Commands

Not present