CAPEC Definitions

    CAPEC Definitions / CAPEC-616

    CAPEC-616: Establish Rogue Location

    An adversary provides a malicious version of a resource at a location that is similar to the expected location of a legitimate resource. After establishing the rogue location, the adversary waits for a victim to visit the location and access the malicious resource.

    Severity:Medium
    Possibility:Medium

    Extended Description

    No Extended Description.

    Mitigations

    No Mitigations found.

    Relationships with other CAPECs

    CAPEC-154: Resource Location Spoofing

    CAPEC-691: Spoof Open-Source Software Metadata

    Prerequisites

    A resource is expected to available to the user.

    Related Weaknesses

    CWE-200: Exposure of Sensitive Information to an Unauthorized Actor