Skip to main content

Threats

Version:
IDTitleDescriptionExternal MappingsCapability MappingsControl Mappings
CCC.LB.TH01Unrestricted Request Traffic Overwhelms Downstream ServicesAbsence of filtering or rate limiting permits malicious traffic to overload downstream services and facilitates brute-force activity.121
CCC.LB.TH03Traffic Distribution Is ManipulatedAdjusting distribution policies can concentrate traffic on specific nodes causing DoS or redirect flows through unwanted paths.111
CCC.LB.TH04Session Persistence Is ExploitedImproper session-affinity settings can enable session fixation or hijacking across backend targets.111
CCC.LB.TH05Health Checks Are Exploited to Take Services OfflineManipulating health-check endpoints or responses can cause healthy targets to be marked unavailable, leading to denial of service.111
CCC.LB.TH06Sensitive Metadata Exposure via HTTP HeadersResponse headers may reveal software versions, internal IPs, or other metadata useful for reconnaissance.110
CCC.LB.TH07TLS Certificates Are Expired or InvalidStale or untrusted certificates weaken encrypted-traffic protection.111

Imports

IDRemarks
CCC.Core.TH01Access Control is Misconfigured
CCC.Core.TH02Data is Intercepted in Transit
CCC.Core.TH07Logs are Tampered With or Deleted
CCC.Core.TH09Logs or Monitoring Data are Read by Unauthorized Users
CCC.Core.TH12Resource Constraints are Exhausted
CCC.Core.TH15Automated Enumeration and Reconnaissance by Non-human
CCC.Core.TH16Logging and Monitoring are Disabled
CCC.Core.TH17Unauthorized Network Access via Misconfigured Rules