| ID | Title | Description | External Mappings | Capability Mappings | Control Mappings |
|---|---|---|---|---|---|
| CCC.CntrReg.TH01 | Vulnerabilities in Artifacts are Exploited | Attackers exploit known vulnerabilities in container images or artifacts stored in the registry, leading to unauthorized access, data breaches, or system compromise. | 1 | 1 | 1 |
| CCC.CntrReg.TH02 | Accumulation of Unused Artifacts | The registry accumulates outdated or unused artifacts, increasing storage costs and the risk of deploying vulnerable or untested versions. | 1 | 1 | 0 |
Imports
| ID | Remarks |
|---|---|
| CCC.Core.TH01 | Access control is misconfigured |
| CCC.Core.TH02 | Data is intercepted in transit |
| CCC.Core.TH03 | Deployment region network is untrusted |
| CCC.Core.TH04 | Data is replicated to untrusted or external locations |
| CCC.Core.TH05 | Data is corrupted during replication |
| CCC.Core.TH06 | Data is lost or corrupted |
| CCC.Core.TH07 | Logs are Tampered With or Deleted |
| CCC.Core.TH09 | Logs or Monitoring Data are Read by Unauthorized Users |
| CCC.Core.TH11 | Event Notifications are Incorrectly Triggered |
| CCC.Core.TH12 | Resource constraints are exhausted |
| CCC.Core.TH14 | Older Resource Versions Are Exploited |
| CCC.Core.TH15 | Automated Enumeration and Reconnaissance by Non-Human Entities |
| CCC.Core.TH16 | Logging and Monitoring are Disabled |