Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-52 — Embedding NULL Bytes
CAPEC-52

Embedding NULL Bytes

TLP:CLEAR

Description

Typical severity: High. Likelihood of attack: High. An adversary embeds one or more null bytes in input to the target software. This attack relies on the usage of a null-valued byte as a string terminator in many environments. The goal is for certain components of the target software to stop processing the input when it encounters the null byte(s).

Mitigation

Properly handle the NULL characters supplied as part of user input prior to doing anything with the data.

Details

Platforms
Software
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.