Compliance Node Overview
MITRE CAPEC-642 (Replace Binaries) is a detailed-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. Adversaries know that certain binaries will be regularly executed as part of normal processing. If these binaries are not protected with the appropriate file system permissions, it could be possible to replace them with malware. This malware might be executed at higher system permission levels. Likelihood of attack: Unknown. Typical severity: High. Maps to weaknesses CWE-732. Relates to MITRE ATT&CK T1505.005, T1554, T1574.005.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/642.html
SHA-256 integrity: ade3627a0cc4c0f222e890b27afbf4f52dd20dad3761cd6f19561abf4f76a2bd
Primary Citations — 11 traced to source
- MITRE CAPEC-642: Replace Binaries (https://capec.mitre.org/data/definitions/642.html)
- CWE-732: underlying weakness (http://cwe.mitre.org/data/definitions/732.html)
+ 9 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.