Compliance Node Overview
MITRE ATT&CK T1631.001 (Ptrace System Calls) is an ATT&CK for Mobile Defense Evasion and Privilege Escalation sub-technique of T1631 (Process Injection). Adversaries may inject malicious code into processes via ptrace (process trace) system calls in order to evade process-based defenses as well as possibly elevate privileges. Ptrace system call injection is a method of executing arbitrary code in the address space of a separate live process. Ptrace system call injection involves attaching to and modifying a running process. Affected platforms: Android, iOS. Mobile controls map to NIST SP 800-124 Rev 2 and OWASP MASVS.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://attack.mitre.org/techniques/T1631/001/
SHA-256 integrity: f255814ef16ef3b9079a6533614bdcb78a8dea5e02d637fbf9524edf4be71071
Primary Citations — 5 traced to source
- MITRE ATT&CK for Mobile Technique T1631.001: Ptrace System Calls (https://attack.mitre.org/techniques/T1631/001/)
- MITRE ATT&CK Mobile Tactic TA0030: Defense Evasion (https://attack.mitre.org/tactics/TA0030/)
+ 3 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.