CAPEC-562: Modify Shared File

Detailed Draft

CAPEC版本: 3.9

更新日期: 2023-01-24

攻击模式描述

An adversary manipulates the files in a shared location by adding malicious programs, scripts, or exploit code to valid content. Once a user opens the shared content, the tainted content is executed.

缓解措施

Disallow shared content. Protect shared folders by minimizing users that have write access. Use utilities that mitigate exploitation like the Microsoft Enhanced Mitigation Experience Toolkit (EMET) to prevent exploits from being run.

分类映射

分类名称 条目ID 条目名称
ATTACK 1080 Taint shared content
关键信息

CAPEC ID: CAPEC-562

抽象级别: Detailed

状态: Draft

相关攻击模式
相关CWE弱点