CAPEC-560: Use of Known Domain Credentials

An adversary guesses or obtains (i.e. steals or purchases) legitimate credentials (e.g. userID/password) to achieve authentication and to perform authorized actions under the guise of an authenticated user or service.

Severity
High
Likelihood
High
5
/ 100
low-risk
Active Threat 5/50 · Minimal
Exploit Availability 0/50 · Minimal