CAPEC-395: Bypassing Electronic Locks and Access Controls

Standard Draft

CAPEC版本: 3.9

更新日期: 2023-01-24

攻击模式描述

An attacker exploits security assumptions to bypass electronic locks or other forms of access controls. Most attacks against electronic access controls follow similar methods but utilize different tools. Some electronic locks utilize magnetic strip cards, others employ RFID tags embedded within a card or badge, or may involve more sophisticated protections such as voice-print, thumb-print, or retinal biometrics. Magnetic Strip and RFID technologies are the most widespread because they are cost effective to deploy and more easily integrated with other electronic security measures. These technologies share common weaknesses that an attacker can exploit to gain access to a facility protected by the mechanisms via copying legitimate cards or badges, or generating new cards using reverse-engineered algorithms.

关键信息

CAPEC ID: CAPEC-395

抽象级别: Standard

状态: Draft

相关攻击模式