Threat DF.C.AC-iDF-VCS.3.3

URI: DF.C.AC-iDF-VCS.3.3

Package: ProcessComms

< prev | next >

Description: Snooped flow of data Data from FlowsFrom to FlowsTo between Client and Service: if communications between Client and Service are subject to snooping, the snooper could read data Data flowing from FlowsFrom to FlowsTo.

Threat Type: Primary Threat

Matching Pattern:

DF.C.AC-iDF-VCS.3.3
MP-AC-iDF-VCS

Finds a data flow not encrypted with keys from a vault, that goes via a client and thence a service, plus any data fields, and the related auth channel, where the client and service have a trust relationship w.r.t. the data flow (i.e., they are not intermediaries in an end-to-end relationship).

        (empty)

        (empty)

CSG-DataFlowEncryption

The data Data flowing between processes FlowsFrom and FlowsTo is encrypted by the two processes (i.e. not relying on transport level encryption).