Compliance Node Overview
MITRE CAPEC-474 (Signature Spoofing by Key Theft) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An attacker obtains an authoritative or reputable signer's private signature key by theft and then uses this key to forge signatures from the original signer to mislead a victim into performing actions that benefit the attacker. Likelihood of attack: Medium. Typical severity: High. Maps to weaknesses CWE-522. Relates to MITRE ATT&CK T1552.004.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/474.html
SHA-256 integrity: 981e679cb03f2333d3547ed5f2fdbbc4969d2f1d2edcee7171b99ddb6dbdf61b
Primary Citations — 9 traced to source
- MITRE CAPEC-474: Signature Spoofing by Key Theft (https://capec.mitre.org/data/definitions/474.html)
- CWE-522: underlying weakness (http://cwe.mitre.org/data/definitions/522.html)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.