Threat DF.A.HPDS-VDADF.6

URI: DF.A.HPDS-VDADF.6

Package: DataLifecycle

< prev | next >

Description: Service Process cannot decrypt data Data for transmission to FlowsTo: the stored copy of Data on Host is encrypted, but FlowsTo expects an unencrypted version, and Process has no means to decrypt the data before sending it.

Threat Type: Secondary Threat

Matching Pattern:

DF.A.HPDS-VDADF.6
MP-HPDS-VDADF

Finds a Host storing a Data Copy not encrypted with keys from a vault, that is read and sent in a data flow by a Process on the same Host, plus optionally the Host and Process managers.

        (empty)

CSG-DataAccessKey

Process Process has a key for encrypting or decrypting data Data.

CSG-DataFlowEncryptionFromProcess

The data Data sent by Process to FlowsTo is encrypted end-to-end (i.e. not relying on transport level encryption).