CAPEC 692 Spoof Version Control System Commit Metadata

Stable Detailed Medium Risk
Severity High

Description

{'xhtml:p': 'An adversary spoofs metadata pertaining to a Version Control System (VCS) (e.g., Git) repository's commits to deceive users into believing that the maliciously provided software is frequently maintained and originates from a trusted source.'}

Attack Execution Flow

4

Mitigations

6

Consequences

Relationships