Encrypt sensitive data in transit. Example implementations can include: Transport Layer Security (TLS) and Open Secure Shell (OpenSSH).
| Capability ID | Capability Description | Mapping Type | ATT&CK ID | ATT&CK Name | Notes |
|---|---|---|---|---|---|
| CIS-3.10 | Encrypt Sensitive Data in Transit | mitigates | T1557 | Adversary-in-the-Middle |
Comments
Transport encryption directly constrains interception and manipulation of communications.
References
|
| CIS-3.10 | Encrypt Sensitive Data in Transit | mitigates | T1040 | Network Sniffing |
Comments
Encryption in transit directly mitigates readable interception of network traffic.
References
|