Compliance Node Overview
MITRE CAPEC-485 (Signature Spoofing by Key Recreation) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An attacker obtains an authoritative or reputable signer's private signature key by exploiting a cryptographic weakness in the signature algorithm or pseudorandom number generation and then uses this key to forge signatures from the original signer to mislead a victim into performing actions that benefit the attacker. Likelihood of attack: Low. Typical severity: High. Maps to weaknesses CWE-330. Relates to MITRE ATT&CK T1552.004.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/485.html
SHA-256 integrity: 7aaa2e74d89ebc80a3f0b1274592a356b50bcdc8332616ab1d04646e486d5a22
Primary Citations — 9 traced to source
- MITRE CAPEC-485: Signature Spoofing by Key Recreation (https://capec.mitre.org/data/definitions/485.html)
- CWE-330: underlying weakness (http://cwe.mitre.org/data/definitions/330.html)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.