Detailedseverity: HighDraft

CAPEC-606Weakening of Cellular Encryption

Abstraction
Detailed
Status
Draft
Severity
High

Description

An attacker, with control of a Cellular Rogue Base Station or through cooperation with a Malicious Mobile Network Operator can force the mobile device (e.g., the retransmission device) to use no encryption (A5/0 mode) or to use easily breakable encryption (A5/1 or A5/2 mode). Metadata: detailed CAPEC pattern, status draft, severity high. Underlying weakness: CWE-757. Related CAPEC pattern: [object Object].

Related weaknesses· 1

CWE-757

Related attack patterns· 1

CAPEC-620 (ChildOf)

Exploits1

TypeTargetConfidenceTier
WeaknessSelection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade')cwe-757100%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CAPEC
Cryptanalysis of Cellular Encryption
CAPEC
Cellular Rogue Base Station
CAPEC
Cellular Jamming
CAPEC
Drop Encryption Level
CAPEC
Cellular Data Injection
CAPEC
Cellular Traffic Intercept
Sourced from MITRE CAPEC. Curated by Adam Lundqvist, SQUR.