CAPEC-387: Navigation Remapping To Propagate Malicious Content

Detailed Draft 严重程度: Medium

CAPEC版本: 3.9

更新日期: 2023-01-24

攻击模式描述

An adversary manipulates either egress or ingress data from a client within an application framework in order to change the content of messages and thereby circumvent the expected application logic.

前提条件

  • Targeted software is utilizing application framework APIs

所需资源

  • A software program that allows the use of adversary-in-the-middle communications between the client and server, such as a man-in-the-middle proxy.
关键信息

CAPEC ID: CAPEC-387

抽象级别: Detailed

状态: Draft

典型严重程度: Medium

相关攻击模式