Compliance Node Overview
MITRE CAPEC-669 (Alteration of a Software Update) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary with access to an organization's software update infrastructure inserts malware into the content of an outgoing update to fielded systems where a wide range of malicious effects are possible. With the same level of access, the adversary can alter a software update to perform specific malicious acts including granting the adversary control over the software's normal functionality. Likelihood of attack: Medium. Typical severity: High. Relates to MITRE ATT&CK T1195.002.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/669.html
SHA-256 integrity: 41ef217172da250f2e6462d155c50f2f4f5fd6581cbd807f805fd31ff7c97177
Primary Citations — 8 traced to source
- MITRE CAPEC-669: Alteration of a Software Update (https://capec.mitre.org/data/definitions/669.html)
- MITRE ATT&CK T1195.002: Supply Chain Compromise: Compromise Software Supply Chain (https://attack.mitre.org/techniques/T1195/)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.