CAPEC-151: Identity Spoofing

Identity Spoofing refers to the action of assuming (i.e., taking on) the identity of some other entity (human or non-human) and then using that identity to accomplish a goal. An adversary may craft messages that appear to come from a different principle or use stolen / spoofed authentication credentials.

Severity
Medium
Likelihood
Medium
17
/ 100
low-risk
Active Threat 14/50 · Low
Exploit Availability 3/50 · Minimal