CWE-308 - CERT CVE

CWE-308 - Use of Single-factor Authentication

The use of single-factor authentication can lead to unnecessary risk of compromise when compared with the benefits of a dual-factor authentication scheme.

CAPEC ID Naziv
CAPEC-16 Dictionary-based Password Attack
CAPEC-49 Password Brute Forcing
CAPEC-509 Kerberoasting
CAPEC-55 Rainbow Table Password Cracking
CAPEC-555 Remote Services with Stolen Credentials
CAPEC-560 Use of Known Domain Credentials
CAPEC-561 Windows Admin Shares with Stolen Credentials
CAPEC-565 Password Spraying
CAPEC-600 Credential Stuffing
CAPEC-644 Use of Captured Hashes (Pass The Hash)
CAPEC-644 Use of Captured Hashes (Pass The Hash)
CAPEC-645 Use of Captured Tickets (Pass The Ticket)
CAPEC-652 Use of Known Kerberos Credentials
CAPEC-653 Use of Known Windows Credentials
CAPEC-70 Try Common or Default Usernames and Passwords