Threaticon
Toggle sidebar

You're viewing a limited, public preview. Log in for full access.

Log in User Guide
Log in Get started
Attack Patterns CAPEC-271 — Schema Poisoning
CAPEC-271

Schema Poisoning

TLP:CLEAR

Description

Typical severity: High. Likelihood of attack: Low. An adversary corrupts or modifies the content of a schema for the purpose of undermining the security of the target. Schemas provide the structure and content definitions for resources used by an application. By replacing or modifying a schema, the adversary can affect how the application handles or interprets a resource, often leading to possible denial of service, entering into an unexpected state, or recording incomplete data.

Mitigation

Design: Protect the schema against unauthorized modification. | Implementation: For applications that use a known schema, use a local copy or a known good repository instead of the schema reference supplied in the schema document. | Implementation: For applications that leverage remote schemas, use the HTTPS protocol to prevent modification of traffic in transit and to avoid unauthorized modification.

Details

Platforms
Software
Added
Jul 14, 2026
Leaving Threaticon

This link opens an external site that isn't part of the platform.