Metalikelihood: Highseverity: Very HighStable
CAPEC-94Adversary in the Middle (AiTM)
Abstraction
Meta
Status
Stable
Likelihood
High
Severity
Very High
Description
Metadata: meta CAPEC pattern, status stable, likelihood high, severity very high. Underlying weaknesses: CWE-300, CWE-290, CWE-593, CWE-287, CWE-294. Mapped ATT&CK technique: [object Object]. Related CAPEC patterns: [object Object], [object Object].
Metadata: meta CAPEC pattern, status stable, likelihood high, severity very high. Underlying weaknesses: CWE-300, CWE-290, CWE-593, CWE-287, CWE-294. Mapped ATT&CK technique: [object Object]. Related CAPEC patterns: [object Object], [object Object].
Related weaknesses· 5
MITRE ATT&CK crosswalk· 1
Related attack patterns· 2
Exploits5
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Weakness | Channel Accessible by Non-Endpointcwe-300 | 100% | live |
| Weakness | Authentication Bypass by Capture-replaycwe-294 | 100% | live |
| Weakness | Improper Authenticationcwe-287 | 100% | live |
| Weakness | Authentication Bypass by Spoofingcwe-290 | 100% | live |
| Weakness | Authentication Bypass: OpenSSL CTX Object Modified after SSL Objects are Createdcwe-593 | 100% | live |
Related to1
| Type | Target | Confidence | Tier |
|---|---|---|---|
| Technique | Adversary-in-the-Middlet1557 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.