Access mediation is the process of granting or denying specific requests to: 1) obtain and use information and related information processing services; and 2) enter specific physical facilities (e.g., Federal buildings, military establishments, border crossing entrances). Access mediation decisions should enforce least privilege by granting access for scoped durations to prevent privilege creep and, where applicable, implement just-in-time (JIT) access. Denial decisions may prevent initial access or terminate access that has already been granted, ensuring continuous enforcement of security policies.
0 NIST0 mitigations167 inferred
Open technique →Access policy administration is the systematic process of defining, implementing, and managing access control policies that dictate user permissions to resources.
0 NIST0 mitigations117 inferred
Open technique →Application code which prevents its own subroutines from accessing intra-process / internal memory space.
0 NIST0 mitigations15 inferred
Open technique →Broadcast isolation restricts the number of computers a host can contact on their LAN.
0 NIST1 mitigations0 inferred
Open technique →Removing specific, potentially malicious, parts of content
0 NIST0 mitigations99 inferred
Open technique →Content Filtering techniques aid in the process of analyzing an input file for malicious or erroneous content and outputting a sanitized version.
0 NIST0 mitigations113 inferred
Open technique →Content format conversion is mechanical transformation from one format to another which may be normalization or specifically flattening.
0 NIST0 mitigations99 inferred
Open technique →Modify content that does not comply with policy.
0 NIST0 mitigations99 inferred
Open technique →Transfer content that does not comply with policy to a quarantine zone.
0 NIST0 mitigations112 inferred
Open technique →Rebuild the file according to the spec so any unreferenced components or objects are removed.
0 NIST0 mitigations99 inferred
Open technique →Modifies specific digital content information by replacing it with something else.
0 NIST0 mitigations99 inferred
Open technique →Verify and validate contents complies with policy
0 NIST0 mitigations100 inferred
Open technique →Limiting the transmission of a credential to a scoped set of relying parties.
0 NIST0 mitigations20 inferred
Open technique →Enforce one-way network communication by preventing two-way communication.
0 NIST0 mitigations0 inferred
Open technique →Permitting only approved domains and their subdomains to be resolved.
0 NIST1 mitigations2 inferred
Open technique →Blocking DNS Network Traffic based on criteria such as IP address, domain name, or DNS query type.
0 NIST1 mitigations2 inferred
Open technique →Restricting inter-domain trust by modifying domain configuration.
1 NIST1 mitigations1 inferred
Open technique →Filtering incoming email traffic based on specific criteria.
0 NIST0 mitigations4 inferred
Open technique →Encrypted encapsulation of routable network traffic.
1 NIST2 mitigations0 inferred
Open technique →Endpoint-based web server access mediation regulates web server access directly from user endpoints by implementing mechanisms such as client-side certificates and endpoint security software to authenticate devices and ensure compliant access.
0 NIST0 mitigations16 inferred
Open technique →Using a digital signature to authenticate a file before opening.
3 NIST3 mitigations51 inferred
Open technique →Blocking the execution of files on a host in accordance with defined application policy rules.
4 NIST3 mitigations51 inferred
Open technique →Execution Isolation techniques prevent application processes from accessing non-essential system resources, such as memory, devices, or files.
2 NIST0 mitigations62 inferred
Open technique →Checking if compressed or encoded data sections can be successfully decompressed or decoded. Can follow with further analysis with semantic knowledge
0 NIST0 mitigations99 inferred
Open technique →Verifying that a file conforms to its expected format specifications
0 NIST0 mitigations100 inferred
Open technique →The process of checking specific static values within a file, such as file signatures or magic numbers, to ensure they match the expected values defined by the file format specification.
0 NIST0 mitigations99 inferred
Open technique →Utilizing the magic number to verify the file
0 NIST0 mitigations99 inferred
Open technique →The process of validating the consistency between a file's metadata and its actual content, ensuring that elements like declared lengths, pointers, and checksums accurately describe the file's content.
0 NIST0 mitigations99 inferred
Open technique →The process of checking specific static values within a file, such as file signatures or magic numbers, to ensure they match the expected values defined by the file format specification.
0 NIST0 mitigations99 inferred
Open technique →Blocking a lookup based on the query's domain name value.
0 NIST0 mitigations2 inferred
Open technique →Blocking a DNS lookup's answer's IP address value.
0 NIST0 mitigations0 inferred
Open technique →Preventing one process from writing to the memory space of another process through hardware based address manager implementations.
1 NIST2 mitigations36 inferred
Open technique →Blocking the resolution of any subdomain of a specified domain name.
0 NIST0 mitigations2 inferred
Open technique →Blocking DNS queries that are deceptively similar to legitimate domain names.
0 NIST0 mitigations2 inferred
Open technique →Restricting network traffic originating from untrusted networks destined towards a private host or enclave.
21 NIST4 mitigations8 inferred
Open technique →Limiting access to computer input/output (IO) ports to restrict unauthorized devices.
0 NIST1 mitigations7 inferred
Open technique →Using kernel-level capabilities to isolate processes.
0 NIST0 mitigations14 inferred
Open technique →LAN access mediation encompasses the application of strict access control policies, systematic verification of devices, and authentication mechanisms to govern connectivity to a Local Area Network.
0 NIST0 mitigations0 inferred
Open technique →Local file access mediation is the process of an operating system granting or denying a specific access request to a local file.
0 NIST0 mitigations14 inferred
Open technique →Local file permissions is the systematic process of defining, implementing, and managing access control policies that dictate user permissions for accessing files on a local system through the configuration of operating system functionality.
8 NIST2 mitigations100 inferred
Open technique →Network access mediation is the control method for authorizing access to a system by a user (or a process acting on behalf of a user) communicating through a network, including a local area network, a wide area network, and the Internet.
0 NIST0 mitigations0 inferred
Open technique →Network Isolation techniques prevent network hosts from accessing non-essential system network resources.
1 NIST2 mitigations74 inferred
Open technique →Control of access to organizational systems and services by users or processes over a network.
0 NIST0 mitigations113 inferred
Open technique →Restricting network traffic originating from any location.
0 NIST0 mitigations74 inferred
Open technique →Restricting unauthorized changes to the operating mode prevents devices from switching into inappropriate or vulnerable states during normal use.
0 NIST0 mitigations0 inferred
Open technique →Assign read/write access controls on designated registers or data tags to prevent unauthorized writes.
0 NIST0 mitigations0 inferred
Open technique →Restricting network traffic originating from a private host or enclave destined towards untrusted networks.
21 NIST2 mitigations30 inferred
Open technique →Physical access mediation is the process of granting or denying specific requests to enter specific physical facilities (e.g., Federal buildings, military establishments, border crossing entrances.)
0 NIST0 mitigations0 inferred
Open technique →Employ a mechanical locking device for securing moveable portions of physical barriers (e.g., doors, gates, drawers) in a secured position.
0 NIST0 mitigations0 inferred
Open technique →Proxy-based web server access mediation focuses on the regulation of web server access through intermediary proxy servers.
0 NIST0 mitigations16 inferred
Open technique →Remote file access mediation is the process of managing and securing access to file systems over a network to ensure that only authorized users or processes can interact with remote files.
0 NIST0 mitigations99 inferred
Open technique →Blocking a reverse lookup based on the query's IP address value.
0 NIST0 mitigations2 inferred
Open technique →Routing access mediation is a network security approach that manages and controls access at the network layer using VPNs, tunneling protocols, firewall rules, and traffic inspection to ensure secure and efficient data routing.
0 NIST0 mitigations0 inferred
Open technique →Controlling access to local computer system resources with kernel-level capabilities.
1 NIST6 mitigations52 inferred
Open technique →Restricting a user account's access to resources.
9 NIST1 mitigations17 inferred
Open technique →Access control where access is determined based on attributes associated with users and the objects being accessed.
0 NIST0 mitigations0 inferred
Open technique →Web session access mediation secures user sessions in web applications by employing robust authentication and integrity validation, along with adaptive threat mitigation techniques, to ensure that access to web resources is authorized and protected from session-related attacks.
0 NIST0 mitigations8 inferred
Open technique →