Detailedlikelihood: Lowseverity: HighDraft
CAPEC-132Symlink Attack
Abstraction
Detailed
Status
Draft
Likelihood
Low
Severity
High
Description
An adversary positions a symbolic link in such a manner that the targeted user or application accesses the link's endpoint, assuming that it is accessing a file with the link's name.
Metadata: detailed CAPEC pattern, status draft, likelihood low, severity high. Underlying weakness: CWE-59. Mapped ATT&CK technique: [object Object]. Related CAPEC pattern: [object Object].
Related weaknesses· 1
MITRE ATT&CK crosswalk· 1
Related attack patterns· 1
Exploits1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Improper Link Resolution Before File Access ('Link Following')cwe-59 | 100% | live |
Related to1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| SubTechnique | Shortcut Modificationt1547.009 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.