CAPEC Definitions

    CAPEC Definitions / CAPEC-539

    CAPEC-539: ASIC With Malicious Functionality

    An attacker with access to the development environment process of an application-specific integrated circuit (ASIC) for a victim system being developed or maintained after initial deployment can insert malicious functionality into the system for the purpose of disruption or further compromise.

    Severity:High
    Possibility:Low

    Extended Description

    No Extended Description.

    Mitigations

    No Mitigations found.

    Relationships with other CAPECs

    CAPEC-444: Development Alteration

    Prerequisites

    The attacker must have working knowledge of some if not all of the components involved in the target system as well as the infrastructure and development environment of the manufacturer.

    Advanced knowledge about the ASIC installed within the target system.

    Related Weaknesses

    No related Weaknesses found.