Skip to main content

Devtools / Container Registry

CCC Container Registry Threats

Version: DEV

IDTitleDescriptionExternal MappingsCapability MappingsControl Mappings
CCC.CntrReg.TH01Vulnerabilities in Artifacts are ExploitedAttackers exploit known vulnerabilities in container images or artifacts stored in the registry, leading to unauthorized access, data breaches, or system compromise.
1
1
1
CCC.CntrReg.TH02Accumulation of Unused ArtifactsThe registry accumulates outdated or unused artifacts, increasing storage costs and the risk of deploying vulnerable or untested versions.
1
1
0

Imports

IDRemarks
CCC.Core.TH01Access control is misconfigured
CCC.Core.TH02Data is intercepted in transit
CCC.Core.TH03Deployment region network is untrusted
CCC.Core.TH04Data is replicated to untrusted or external locations
CCC.Core.TH05Data is corrupted during replication
CCC.Core.TH06Data is lost or corrupted
CCC.Core.TH07Logs are Tampered With or Deleted
CCC.Core.TH09Logs or Monitoring Data are Read by Unauthorized Users
CCC.Core.TH11Event Notifications are Incorrectly Triggered
CCC.Core.TH12Resource constraints are exhausted
CCC.Core.TH14Older Resource Versions Are Exploited
CCC.Core.TH15Automated Enumeration and Reconnaissance by Non-Human Entities
CCC.Core.TH16Logging and Monitoring are Disabled