Detailedlikelihood: Highseverity: HighStable

CAPEC-164Mobile Phishing

Abstraction
Detailed
Status
Stable
Likelihood
High
Severity
High

Description

An adversary targets mobile phone users with a phishing attack for the purpose of soliciting account passwords or sensitive information from the user. Mobile Phishing is a variation of the Phishing social engineering technique where the attack is initiated via a text or SMS message, rather than email. The user is enticed to provide information or visit a compromised web site via this message. Apart from the manner in which the attack is initiated, the attack proceeds as a standard Phishing attack.

Related weaknesses· 1

CWE-451

Related attack patterns· 1

CAPEC-98 (ChildOf)

Exploits1

TypeTargetConfidenceTier
WeaknessUser Interface (UI) Misrepresentation of Critical Informationcwe-451100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
Phishing
CAPEC
Voice Phishing
CAPEC
Pretexting via Phone
CAPEC
Spear Phishing
CAPEC
Pretexting
CAPEC
Pretexting via Customer Service
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.