Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-690 — Metadata Spoofing
CAPEC-690

Metadata Spoofing

TLP:CLEAR

Description

Typical severity: High. Likelihood of attack: Medium. An adversary alters the metadata of a resource (e.g., file, directory, repository, etc.) to present a malicious resource as legitimate/credible.

Mitigation

Validate metadata of resources such as authors, timestamps, and statistics. | Confirm the pedigree of open source packages and ensure the code being downloaded does not originate from another source. | Even if the metadata is properly checked and a user believes it to be legitimate, there may still be a chance that they've been duped. Therefore, leverage automated testing techniques to determine where malicious areas of the code may exist.

Details

Platforms
Social-engineering
Supply-chain
Software
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.