Standardlikelihood: Lowseverity: Very HighDraft

CAPEC-480Escaping Virtualization

Abstraction
Standard
Status
Draft
Likelihood
Low
Severity
Very High

Description

An adversary gains access to an application, service, or device with the privileges of an authorized or privileged user by escaping the confines of a virtualized environment. The adversary is then able to access resources or execute unauthorized code within the host environment, generally with the privileges of the user running the virtualized process. Successfully executing an attack of this type is often the first step in executing more complex attacks.

Related weaknesses· 1

CWE-693

MITRE ATT&CK crosswalk· 1

T1611: Escape to Host

Related attack patterns· 1

CAPEC-115 (ChildOf)

Exploits1

TypeTargetConfidenceTier
WeaknessProtection Mechanism Failurecwe-693100%live

Related to1

TypeTargetConfidenceTier
TechniqueEscape to Hostt1611100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
Hijacking a privileged process
CAPEC
Privilege Abuse
CAPEC
Hijacking a Privileged Thread of Execution
CAPEC
Authentication Abuse
CAPEC
Privilege Escalation
CAPEC
Escaping a Sandbox by Calling Code in Another Language
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.