Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-517 — Documentation Alteration to Circumvent Dial-down
CAPEC-517

Documentation Alteration to Circumvent Dial-down

TLP:CLEAR

Description

Typical severity: High. Likelihood of attack: Low. An attacker with access to a manufacturer's documentation, which include descriptions of advanced technology and/or specific components' criticality, alters the documents to circumvent dial-down functionality requirements. This alteration would change the interpretation of implementation and manufacturing techniques, allowing for advanced technologies to remain in place even though these technologies might be restricted to certain customers, such as nations on the terrorist watch list, giving the attacker on the receiving end of a shipped product access to an advanced technology that might otherwise be restricted.

Mitigation

Digitize documents and cryptographically sign them to verify authenticity. | Password protect documents and make them read-only for unauthorized users. | Avoid emailing important documents and configurations. | Ensure deleted files are actually deleted. | Maintain backups of the document for recovery and verification.

Details

Platforms
Supply-chain
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.