Standardseverity: HighDraft
CAPEC-636Hiding Malicious Data or Code within Files
Abstraction
Standard
Status
Draft
Severity
High
Description
Files on various operating systems can have a complex format which allows for the storage of other data, in addition to its contents. Often this is metadata about the file, such as a cached thumbnail for an image file. Unless utilities are invoked in a particular way, this data is not visible during the normal use of the file. It is possible for an attacker to store malicious data or code using these facilities, which would be difficult to discover.
Related weaknesses· 1
MITRE ATT&CK crosswalk· 5
Related attack patterns· 1
Exploits1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Embedded Malicious Codecwe-506 | 100% | live |
Related to5
| Type | Target | Confidence | Tier |
|---|---|---|---|
| SubTechnique | Steganographyt1001.002 | 100% | live |
| SubTechnique | Compile After Deliveryt1027.004 | 100% | live |
| Technique | Template Injectiont1221 | 100% | live |
| SubTechnique | Steganographyt1027.003 | 100% | live |
| SubTechnique | Compiled HTML Filet1218.001 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.