Compliance Node Overview
MITRE CAPEC-479 (Malicious Root Certificate) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary exploits a weakness in authorization and installs a new root certificate on a compromised system. Certificates are commonly used for establishing secure TLS/SSL communications within a web browser. When a user attempts to browse a website that presents a certificate that is not trusted an error message will be displayed to warn the user of the security risk. Likelihood of attack: Low. Typical severity: Low. Maps to weaknesses CWE-284. Relates to MITRE ATT&CK T1553.004.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/479.html
SHA-256 integrity: b879301ec6825561eb9ddac890d29b63de5412d101ab4183ac952e0d417c27e6
Primary Citations — 9 traced to source
- MITRE CAPEC-479: Malicious Root Certificate (https://capec.mitre.org/data/definitions/479.html)
- CWE-284: underlying weakness (http://cwe.mitre.org/data/definitions/284.html)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.