What MITRE CAPEC-552: Install Rootkit (Detailed Attack Pattern - High Severity) requires
MITRE CAPEC-552 (Install Rootkit) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary exploits a weakness in authentication to install malware that alters the functionality and information provide by targeted operating system API calls. Often referred to as rootkits, it is often used to hide the presence of programs, files, network connections, services, drivers, and other system components. Likelihood of attack: Medium. Typical severity: High. Maps to weaknesses CWE-284. Relates to MITRE ATT&CK T1014, T1542.003, T1547.006.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/552.html
SHA-256 integrity: a32628acba8292413c8683831a281777fe8596064fd5efa7e5f1938664045763
Primary Citations — 10 traced to source
- MITRE CAPEC-552: Install Rootkit (https://capec.mitre.org/data/definitions/552.html)
- CWE-284: underlying weakness (http://cwe.mitre.org/data/definitions/284.html)
+ 8 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
- Discovery (free): /api/v1/nodes/mitre-capec-capec-552-install-rootkit.json — 6-field metadata
- Vault (full node): /api/v1/vault/nodes/mitre-capec-capec-552-install-rootkit.json — full 13-key payload, $0.01 USDC (L402/Skyfire/Direct Base)
- Canonical URL: https://bidda.com/intelligence/mitre-capec-capec-552-install-rootkit
- Back to registry: Browse all 10,085 compliance nodes