Compliance Node Overview
MITRE CAPEC-185 (Malicious Software Download) is an attack pattern in which an attacker uses deceptive methods to cause a user or automated process to download and install dangerous code from an attacker-controlled source. Severity: Very High. Maps to CWE-494 (Download of Code Without Integrity Check). Parent: CAPEC-184 Software Integrity Attack. Compliance: NIST SP 800-53 SI-3/SI-7/SC-44, ISO 27001 A.8.7/A.8.23, EU Cyber Resilience Act, CISA #StopRansomware Guide.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/185.html
SHA-256 integrity: 7fe3a90c1ee27d0ce03edf6de70797fbf34408d109d446ad2c5956ae89106afd
Primary Citations — 8 traced to source
- MITRE CAPEC-185: Malicious Software Download (https://capec.mitre.org/data/definitions/185.html)
- CWE-494: Download of Code Without Integrity Check
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.