Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-480 — Escaping Virtualization
CAPEC-480

Escaping Virtualization

TLP:CLEAR

Description

Typical severity: Very High. Likelihood of attack: Low. An adversary gains access to an application, service, or device with the privileges of an authorized or privileged user by escaping the confines of a virtualized environment. The adversary is then able to access resources or execute unauthorized code within the host environment, generally with the privileges of the user running the virtualized process. Successfully executing an attack of this type is often the first step in executing more complex attacks.

Mitigation

Ensure virtualization software is current and up-to-date. | Abide by the least privilege principle to avoid assigning users more privileges than necessary.

Details

Platforms
Software
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.