StandardDraft

CAPEC-569Collect Data as Provided by Users

Abstraction
Standard
Status
Draft

Description

An attacker leverages a tool, device, or program to obtain specific information as provided by a user of the target system. This information is often needed by the attacker to launch a follow-on attack. This attack is different than Social Engineering as the adversary is not tricking or deceiving the user. Instead the adversary is putting a mechanism in place that captures the information that a user legitimately enters into a system. Deploying a keylogger, performing a UAC prompt, or wrapping the Windows default credential provider are all examples of such interactions.

MITRE ATT&CK crosswalk· 1

T1056: Input Capture

Related attack patterns· 1

CAPEC-116 (ChildOf)

Related to1

TypeTargetConfidenceTier
TechniqueInput Capturet1056100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
Capture Credentials via Keylogger
CAPEC
Collect Data from Clipboard
CAPEC
Collect Data from Registries
Technique
Input Capture
Tactic
Credential Access
CAPEC
Credential Prompt Impersonation
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.