Compliance Node Overview
MITRE CAPEC-52 (Embedding NULL Bytes) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary embeds one or more null bytes in input to the target software. This attack relies on the usage of a null-valued byte as a string terminator in many environments. The goal is for certain components of the target software to stop processing the input when it encounters the null byte(s). Likelihood of attack: High. Typical severity: High. Maps to weaknesses CWE-158, CWE-172, CWE-173, CWE-74, and others.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/52.html
SHA-256 integrity: c0cd92cdb0d7833191f5520c464281342708295656516206915c960cc2d18df3
Primary Citations — 11 traced to source
- MITRE CAPEC-52: Embedding NULL Bytes (https://capec.mitre.org/data/definitions/52.html)
- CWE-158: underlying weakness (http://cwe.mitre.org/data/definitions/158.html)
+ 9 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.