mal-lang / coreLang

A probabilistic attack simulation language for the (abstract) IT domain
https://mal-lang.org/coreLang/
Other
10 stars 12 forks source link

Add deliver malicious removable media attack step to the User #40

Closed andrewbwm closed 3 years ago

andrewbwm commented 3 years ago

Add an attack step on the User to represent the attacker's attempts to supply malicious removable media drives that unsuspecting and security unaware users may plug into their work systems.

https://attack.mitre.org/techniques/T1091/

@skatsikeas This is a relatively simple change that just needs your quick review and I will merge it in.

andrewbwm commented 3 years ago

For situations where the firmware is modified on removable drives that legitimately are used within the organisation the hardware supply chain logic should be used instead.