CAPEC — Common Attack Pattern Enumeration

CAPEC (Common Attack Pattern Enumeration and Classification) is a comprehensive dictionary and classification taxonomy of known attacks used by adversaries. By cataloging threat mechanisms, severity levels, execution domains, and underlying structural vulnerability links, CAPEC allows cybersecurity teams to trace back attack behaviors to specific software and hardware weaknesses (CWE).

TOTAL PATTERNS
615
HIERARCHY DEPTH
4 Levels
CWE MAPPINGS
1,247 Links

Notable Attack Patterns

1Software

Accessing Functionality Not Properly Constrained by ACLs

? CWE Mappings
10Software

Buffer Overflow via Environment Variables

? CWE Mappings
100Software

Overflow Buffers

? CWE Mappings
101Software

Server Side Include (SSI) Injection

? CWE Mappings

Filter CAPEC Data

Showing 50 of 559 patterns

Attack Patterns per Domain

CAPEC Hierarchy Overview

Patterns with/without CWE Mapping

TOTAL559
With CWE Mapping
428 Patterns76.6%
Without CWE Mapping
131 Patterns23.4%

Top CAPEC by Related CWE Count

Understanding CAPEC Fields

identifier

REQUIRED STRING

The unique standardized designator for each specific adversarial attack pattern cataloged (e.g., CAPEC-100).

name & description

REQUIRED TEXT

A descriptive header and a detailed explanation of the threat mechanics, attack workflow, obstacles, and severity results.

execution domains

CLASS CATEGORIZATION

The technological environments targeted by the pattern: Software, Hardware, Network, Social Engineering, or Physical Systems.

hierarchy relations

STRUCTURAL MAPPING

Specifies the taxonomic relationships between items. Can point to parent categories (ChildOf) or dictate action orders (CanPrecede).

CWE links

VULNERABILITY BRIDGE

Direct linkages back to the system software/hardware design weaknesses and flaws exploited by this attack pattern.