Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-639 — Probe System Files
CAPEC-639

Probe System Files

TLP:CLEAR

Description

Typical severity: Medium. An adversary obtains unauthorized information due to improperly protected files. If an application stores sensitive information in a file that is not protected by proper access control, then an adversary can access the file and search for sensitive information.

Mitigation

Verify that files have proper access controls set, and reduce the storage of sensitive information to only what is necessary.

Details

Platforms
Software
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.