Compliance Node Overview
MITRE CAPEC-53 (Postfix, Null Terminate, and Backslash) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. If a string is passed through a filter of some kind, then a terminal NULL may not be valid. Using alternate representation of NULL allows an adversary to embed the NULL mid-string while postfixing the proper data so that the filter is avoided. One example is a filter that looks for a trailing slash character. Likelihood of attack: High. Typical severity: High. Maps to weaknesses CWE-158, CWE-172, CWE-173, CWE-74, and others.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/53.html
SHA-256 integrity: 38cb53ad0ad84404c5108c74a5b4ad26f99eda078d7ddae90a7a4464b77b8a8e
Primary Citations — 10 traced to source
- MITRE CAPEC-53: Postfix, Null Terminate, and Backslash (https://capec.mitre.org/data/definitions/53.html)
- CWE-158: underlying weakness (http://cwe.mitre.org/data/definitions/158.html)
+ 8 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.