What MITRE CAPEC-492: Regular Expression Exponential Blowup (Standard Attack Pattern) requires
MITRE CAPEC-492 (Regular Expression Exponential Blowup) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary may execute an attack on a program that uses a poor Regular Expression(Regex) implementation by choosing input that results in an extreme situation for the Regex. A typical extreme situation operates at exponential time compared to the input size. Likelihood of attack: Unknown. Maps to weaknesses CWE-400, CWE-1333.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/492.html
SHA-256 integrity: e0564b2fbe05232b3d6c6f31d2de17edf239bd725cc2e5e80ee9aa011154d05d
Primary Citations — 9 traced to source
- MITRE CAPEC-492: Regular Expression Exponential Blowup (https://capec.mitre.org/data/definitions/492.html)
- CWE-400: underlying weakness (http://cwe.mitre.org/data/definitions/400.html)
+ 7 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-capec-capec-492-regular-expression-exponential-blowup.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-capec-capec-492-regular-expression-exponential-blowup.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-capec-capec-492-regular-expression-exponential-blowup
- Back to registry: Browse all 10,085 compliance nodes