What MITRE CAPEC-90: Reflection Attack in Authentication Protocol (Standard Attack Pattern - High Severity) requires
MITRE CAPEC-90 (Reflection Attack in Authentication Protocol) is a standard-level attack pattern in the MITRE Common Attack Pattern Enumeration and Classification. An adversary can abuse an authentication protocol susceptible to reflection attack in order to defeat it. Doing so allows the adversary illegitimate access to the target system, without possessing the requisite credentials. Reflection attacks are of great concern to authentication protocols that rely on a challenge-handshake or similar mechanism. Likelihood of attack: High. Typical severity: High. Maps to weaknesses CWE-301, CWE-303.
Pillar: Cybersecurity · Authority: MITRE Corporation · Version: 1.0.0 · Last updated:
Primary source: https://capec.mitre.org/data/definitions/90.html
SHA-256 integrity: 154e281dcfda717a03b905a051b4265913f5a464c31fab2e89903caf90b08367
Primary Citations — 8 traced to source
- MITRE CAPEC-90: Reflection Attack in Authentication Protocol (https://capec.mitre.org/data/definitions/90.html)
- CWE-301: underlying weakness (http://cwe.mitre.org/data/definitions/301.html)
+ 6 more citations (full bibliography, deterministic workflow, actionable schema and crosswalks) included in the vault unlock — $0.01 via Skyfire / L402 / Direct Base USDC.
Access
⚠ Important: Human Verification Required
Bidda compliance nodes are reference intelligence, not legal advice. Every node must be reviewed by a qualified compliance professional or legal counsel before implementation in any enterprise workflow, regulated system, or compliance programme. See bidda.com/disclaimer for full terms.