BaseDraft
CWE-1323Improper Management of Sensitive Trace Data
Category: data-exposure
Description
Trace data collected from several sources on the
System-on-Chip (SoC) is stored in unprotected locations or
transported to untrusted agents.
Common consequences· 1
- Confidentiality — Read MemoryAn adversary can read secret values if they are captured in debug traces and stored unsafely.
Potential mitigations· 1
- [Implementation]Tag traces to indicate owner and debugging privilege level (designer, OEM, or end user) needed to access that trace.
Related CAPEC attack patterns· 3
References
Exploits (incoming)3
| Type | Target | Confidence | Tier |
|---|---|---|---|
| AttackPattern | Collect Data from Common Resource Locationscapec-150 | 100% | live |
| AttackPattern | Pull Data from System Resourcescapec-545 | 100% | live |
| AttackPattern | White Box Reverse Engineeringcapec-167 | 100% | live |
Related by meaning· 6
Nearest entities by semantic similarity across the cs-graph corpus.