Threat DF.C.ACDF-VCS-i.3.1

URI: DF.C.ACDF-VCS-i.3.1

Package: ProcessComms

< prev | next >

Description: Compromised service Service reads the flow of data Data from FlowsFrom to FlowsTo sent from Client: if an attacker can compromise or impersonate service Service, they can read data in messages from Client.

Threat Type: Primary Threat

Matching Pattern:

DF.C.ACDF-VCS-i.3.1
MP-ACDF-VCS-i

Finds a data flow not encrypted with keys from a vault, that goes via a client and thence a service, plus any data fields, and the related channel, where the connection is direct and not via any credential-sharing intermediaries.

        (empty)

        (empty)

CSG-DataFlowEncryption

The data Data flowing between processes FlowsFrom and FlowsTo is encrypted by the two processes (i.e. not relying on transport level encryption).