Spoofing
What is Spoofing?
A technique where an attacker disguises their identity or the source of communication by falsifying data such as IP addresses, email headers, or caller IDs.
Terms that appear alongside spoofing
Each of these is named in at least one of the same controls as spoofing. The number is how many controls name both.
- resilience 4 shared controls
- enisa 4 shared controls
- nist 4 shared controls
- cybersecurity 4 shared controls
- risk assessment 3 shared controls
- cyber resilience 3 shared controls
- ransomware 3 shared controls
- audit 3 shared controls
Frameworks that govern spoofing
What the standards actually require on spoofing
Requirements naming spoofing across 6 standards, quoted from the control text.
Global Navigation Satellite System spoofing threats affecting positioning and timing must be shared.
CT-2 · GNSS Spoofing →Anti-spoofing measures are implemented to detect and block forged source IP addresses from entering the trusted network.
1.4.3 · Anti-spoofing measures implemented →Detect is the third of five functional elements per MSC-FAL.1/Circ.3/Rev.2. Activities include: (1) Anomaly Detection - behavioural baselines for OT systems (bridge equipment patterns + engine room SCADA + propulsion + cargo) + network anomaly detection (deep...
IMO-MSC-FAL-Detect-AnomalyDetection-OT-IT-Monitoring-Reporting-BridgeAlarms · IMO MSC-FAL Detect Function - Anomaly Detection + OT and IT System Monitoring + Bridge Alarms + Log Aggregation + Incident Reporting Channels + Crew Observation →X.805 Clause 8 defines 5 Threat Categories that the X.805 Security Architecture is designed to mitigate + provides a Threat-Dimension Countermeasure Matrix linking each threat to specific Dimensions.
X805-Threats-Destruction-Corruption-Removal-Disclosure-Interruption-72Cell-Matrix-Application · ITU-T X.805 5 Threat Categories - Destruction + Corruption + Removal + Disclosure + Interruption + Threat-Dimension Countermeasure Matrix + 72-Cell Matrix Application + STRIDE + MITRE ATT and CK + Network Modular Risk Assessment →Gateways perform ingress traffic filtering to detect and prevent IP source address spoofing.
ISM-1427 · Gateways perform ingress traffic filtering to detect and prevent IP source address spoofin →350.0-G-3 sec.2.3: characterisation of threats against space missions (e.g. eavesdropping, jamming, spoofing, replay, denial of service, unauthorised access, software threats).
CCSDS350-2.3 · Types of Threat →Questions people ask about spoofing
What is Spoofing?
Why is Spoofing important for compliance?
Which compliance frameworks address Spoofing?
Where can I learn more about Spoofing?
See how Spoofing applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.