Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-651 — Eavesdropping
CAPEC-651

Eavesdropping

TLP:CLEAR

Description

Typical severity: Medium. An adversary intercepts a form of communication (e.g. text, audio, video) by way of software (e.g., microphone and audio recording application), hardware (e.g., recording equipment), or physical means (e.g., physical proximity). The goal of eavesdropping is typically to gain unauthorized access to sensitive information about the target for financial, personal, political, or other gains. Eavesdropping is different from a sniffing attack as it does not take place on a network-based communication channel (e.g., IP traffic). Instead, it entails listening in on the raw audio source of a conversation between two or more parties.

Mitigation

Be mindful of your surroundings when discussing sensitive information in public areas. | Implement proper software restriction policies to only allow authorized software on your environment. Use of anti-virus and other security monitoring and detecting tools can aid in this too. Closely monitor installed software for unusual behavior or activity, and implement patches as soon as they become available. | If possible, physically disable the microphone on your machine if it is not needed.

Details

Platforms
Communications
Software
Physical-security
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.