{
  "node_id": "mitre-capec-capec-442-infected-software",
  "title": "MITRE CAPEC-442: Infected Software (Standard Attack Pattern - High Severity)",
  "domain": "Cybersecurity",
  "version": "1.0.0",
  "last_updated": "2026-05-25",
  "bluf": "MITRE CAPEC-442 (Infected Software) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary adds malicious logic, often in the form of a computer virus, to otherwise benign software. This logic is often hidden from the user of the software and works behind the scenes to achieve negative impacts. Many times, the malicious logic is inserted into empty space between legitimate code, and is then called when the software is executed. Likelihood of attack: Medium. Typical severity: High. Parent pattern for CAPEC-448 Embed Virus into DLL. Maps to weaknesses CWE-506. Relates to MITRE ATT&CK T1195.001, T1195.002.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "mitre_attack"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nist-sp-800-53-r5",
    "iso-27001-2022",
    "cis-controls-v8",
    "owasp-asvs-l2",
    "mitre-attack-t1195-supply-chain-compromise"
  ],
  "primary_citations_count": 10
}