Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-94 — Adversary in the Middle (AiTM)
CAPEC-94

Adversary in the Middle (AiTM)

TLP:CLEAR

Description

Typical severity: Very High. Likelihood of attack: High. An adversary targets the communication between two components (typically client and server), in order to alter or obtain data from transactions. A general approach entails the adversary placing themself within the communication channel between the two components.

Mitigation

Ensure Public Keys are signed by a Certificate Authority | Encrypt communications using cryptography (e.g., SSL/TLS) | Use Strong mutual authentication to always fully authenticate both ends of any communications channel. | Exchange public keys using a secure channel

Details

Platforms
Communications
Software
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.