{
  "node_id": "mitre-capec-capec-651-eavesdropping",
  "title": "MITRE CAPEC-651: Eavesdropping (Standard Attack Pattern - Medium Severity)",
  "domain": "Cybersecurity",
  "version": "1.0.0",
  "last_updated": "2026-05-25",
  "bluf": "MITRE CAPEC-651 (Eavesdropping) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary intercepts a form of communication (e.g. text, audio, video) by way of software (e.g., microphone and audio recording application), hardware (e.g., recording equipment), or physical means (e.g., physical proximity). The goal of eavesdropping is typically to gain unauthorized access to sensitive information about the target for financial, personal, political, or other gains. Likelihood of attack: Unknown. Typical severity: Medium. Parent pattern for CAPEC-508 Shoulder Surfing; CAPEC-634 Probe Audio and Video Peripherals; CAPEC-699 Eavesdropping on a Monitor. Maps to weaknesses CWE-200. Relates to MITRE ATT&CK T1111.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "mitre_attack"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nist-sp-800-53-r5",
    "iso-27001-2022",
    "cis-controls-v8",
    "owasp-asvs-l2",
    "mitre-attack-t1111-multi-factor-authentication-interception"
  ],
  "primary_citations_count": 9
}