Threat DF.C.ACDFVTS-i.3.6

URI: DF.C.ACDFVTS-i.3.6

Package: ProcessComms

< prev | next >

Description: Compromised service Service reads the encrypted flow of Data from/via Client: if an attacker can compromise service Service, they can they can access its cryptographic key and read data Data flowing to Service from FlowsFrom.

Threat Type: Primary Threat

Matching Pattern:

DF.C.ACDFVTS-i.3.6
MP-ACDFVTS-i

Finds a data flow encrypted with keys from a vault, flowing to a service from/via a client, plus any data fields, the data access, and the associated client channel, where the connection is direct and not via any credential-sharing intermediaries.

        (empty)

        (empty)

CSG-EncryptedDataProcessingAtService

Process Service uses homomorphic encryption technology to perform calculations on data Data in an encrypted domain, allowing it to process the data without first decrypting.