Compliance Node Overview
MITRE CAPEC-459 (Creating a Rogue Certification Authority Certificate) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary exploits a weakness resulting from using a hashing algorithm with weak collision resistance to generate certificate signing requests (CSR) that contain collision blocks in their "to be signed" parts. The adversary submits one CSR to be signed by a trusted certificate authority then uses the signed blob to make a second certificate appear signed by said certificate authority. Likelihood of attack: Medium. Typical severity: Very High. Maps to weaknesses CWE-327, CWE-295, CWE-290.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/459.html
SHA-256 integrity: 1b0ac503e2fa3d4938ce60ded1535801312e30af717dfe090ac3837d5dc55da7
Primary Citations — 9 traced to source
- MITRE CAPEC-459: Creating a Rogue Certification Authority Certificate (https://capec.mitre.org/data/definitions/459.html)
- CWE-327: underlying weakness (http://cwe.mitre.org/data/definitions/327.html)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.