CAPEC 530 Provide Counterfeit Component

Draft Detailed Low Risk
Severity High

Description

An attacker provides a counterfeit component during the procurement process of a lower-tier component supplier to a sub-system developer or integrator, which is then built into the system being upgraded or repaired by the victim, allowing the attacker to cause disruption or additional compromise.

Mitigations

1

Consequences

Relationships