CAPEC Definitions

    CAPEC Definitions / CAPEC-655

    CAPEC-655: Avoid Security Tool Identification by Adding Data

    An adversary adds data to a file to increase the file size beyond what security tools are capable of handling in an attempt to mask their actions. In addition to this, adding data to a file also changes the file's hash, frustrating security tools that look for known bad files by their hash.

    Severity:High
    Possibility:High

    Extended Description

    No Extended Description.

    Mitigations

    No Mitigations found.

    Relationships with other CAPECs

    CAPEC-572: Artificially Inflate File Sizes

    Prerequisites

    No prerequisites found.

    Related Weaknesses

    No related Weaknesses found.

    CAPEC-655: Avoid Security Tool Identification by Adding Data | CVE-DB