CAPEC 21 Exploitation of Trusted Identifiers

Stable Meta High Risk
Severity High

Description

{'xhtml:p': 'An adversary guesses, obtains, or \'rides\' a trusted identifier (e.g. session ID, resource ID, cookie, etc.) to perform authorized actions under the guise of an authenticated user or service.'}

Attack Execution Flow

5

Mitigations

7

Consequences

Relationships

Related ATT&CK Techniques

3

Resources Required

2