{
  "node_id": "mitre-attack-mobile-t1632-001-code-signing-policy-modification",
  "title": "MITRE ATT&CK Mobile T1632.001: Code Signing Policy Modification (Mobile Tactic TA0030 - Defense Evasion)",
  "domain": "Cybersecurity",
  "version": "1.0.0",
  "last_updated": "2026-05-25",
  "bluf": "MITRE ATT&CK T1632.001 (Code Signing Policy Modification) is an ATT&CK for Mobile Defense Evasion sub-technique of T1632 (Subvert Trust Controls). Adversaries may modify code signing policies to enable execution of applications signed with unofficial or unknown keys. Code signing provides a level of authenticity on an app from a developer, guaranteeing that the program has not been tampered with and comes from an official source. Security controls can include enforcement mechanisms to ensure that only valid, signed code can be run on a device. Affected platforms: Android, iOS. MITRE-documented mitigations include M1012 Enterprise Policy, M1006 Use Recent OS Version, M1011 User Guidance. Mobile controls map to NIST SP 800-124 Rev 2 and OWASP MASVS.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "mitre_d3fend"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nist-cybersecurity-framework-2-0",
    "iso-27001-2022",
    "nist-sp-800-53-r5",
    "cis-controls-v8",
    "mitre-attack-mobile-t1632-subvert-trust-controls"
  ],
  "primary_citations_count": 6
}