CAPEC-590 IP Address Blocking

CAPEC ID: 590

CAPEC-590 Metadata

Likelihood of Attack

Low

Typical Severity

High

Overview

Summary

An adversary performing this type of attack drops packets destined for a target IP address. The aim is to prevent access to the service hosted at the target IP address.

Prerequisites

This attack requires the ability to conduct deep packet inspection with an In-Path device that can drop the targeted traffic and/or connection.

Potential Solutions / Mitigations

Have a large pool of backup IPs built into the application and support proxy capability in the application.

Related Weaknesses (CWE)

CWE ID Description
CWE-300 Channel Accessible by Non-Endpoint

Related CAPECs

CAPEC ID Description
CAPEC-603 An adversary blocks the delivery of an important system resource causing the system to fail or stop working.

Stay Ahead of Attack Patterns

Understanding CAPEC patterns helps security professionals anticipate and thwart potential attacks. Leverage these insights to enhance threat modeling, strengthen your software development lifecycle, and train your security teams effectively.