Detailedlikelihood: Lowseverity: HighDraft
CAPEC-65Sniff Application Code
Abstraction
Detailed
Status
Draft
Likelihood
Low
Severity
High
Description
An adversary passively sniffs network communications and captures application code bound for an authorized client. Once obtained, they can use it as-is, or through reverse-engineering glean sensitive information or exploit the trust relationship between the client and server. Such code may belong to a dynamic update to the client, a patch being applied to a client component or any such interaction where the client is authorized to communicate with the server.
Related weaknesses· 4
MITRE ATT&CK crosswalk· 1
Related attack patterns· 2
Exploits4
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Protection Mechanism Failurecwe-693 | 100% | live |
| Weakness | Cleartext Storage of Sensitive Information in Executablecwe-318 | 100% | live |
| Weakness | Cleartext Transmission of Sensitive Informationcwe-319 | 100% | live |
| Weakness | Missing Encryption of Sensitive Datacwe-311 | 100% | live |
Related to1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Technique | Network Sniffingt1040 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.