CWE/CAPEC Definitions Update

2022-09-12 Thread Alec J Summers
Dear CAPEC Community, Earlier this summer I emailed you regarding the CWE/CAPEC User Experience Working Group’s efforts to harmonize the definitions of some key terminology across our sites. As CWE and CAPEC were developed separately and on a different timeline, some of the terms are not simila

Re: [Deadline: Tonight] CWE/CAPEC Definitions

2022-08-07 Thread Jim
8 PM > To: CAPEC Researcher Discussion > Cc: Godsey, Charles M (Mike) ; Keith J Hill > ; Alec J Summers ; Karl Ackerman > > Subject: [EXTERNAL] Re: CWE/CAPEC Definitions > > I believe Karl Ackerman's definition for Weakness is better, but I would stop > after behav

[Deadline: Tonight] CWE/CAPEC Definitions

2022-07-26 Thread Maldonado Rosado, Shadya Beatriz
; Alec J Summers ; Karl Ackerman Subject: [EXTERNAL] Re: CWE/CAPEC Definitions I believe Karl Ackerman's definition for Weakness is better, but I would stop after behavior. weakness: A deficiency in a product or configuration that allows unintended behavior. Ofer Sheinkin +972-50-7900

Re: CWE/CAPEC Definitions

2022-07-21 Thread Ofer Sheinkin
3:05 PM > *To:* Keith J Hill ; Alec J Summers ; > CAPEC Researcher Discussion > *Subject:* RE: CWE/CAPEC Definitions > > > How about something like this: > > > > Weakness: A state or condition in a product that when subjected to certain > condition(s) will fail. > &g

Re: CWE/CAPEC Definitions

2022-07-20 Thread Karl Ackerman
lec J Summers ; CAPEC Researcher Discussion Subject: RE: CWE/CAPEC Definitions How about something like this: Weakness: A state or condition in a product that when subjected to certain condition(s) will fail. Thanks, Mike C. Michael Godsey BSETE, MSIE, MBA, CISSP, CISM, GICSP, CFE Counter-

RE: CWE/CAPEC Definitions

2022-07-20 Thread Godsey, Charles M (Mike)
-mail and destroy all copies of the original message. Thank you. From: Keith J Hill Sent: Wednesday, July 20, 2022 2:53 PM To: Alec J Summers ; CAPEC Researcher Discussion Subject: [EXTERNAL] RE: CWE/CAPEC Definitions Nationwide Information Security Warning: This is an EXTERNAL email. Use

RE: CWE/CAPEC Definitions

2022-07-20 Thread Keith J Hill
s that results in a vulnerability/harm. Keith From: Alec J Summers Sent: Wednesday, July 20, 2022 2:39 PM To: CAPEC Researcher Discussion Subject: FW: CWE/CAPEC Definitions Just a soft follow-up and reminder that we are seeking comment from our CAPEC researcher community on the proposed definit

FW: CWE/CAPEC Definitions

2022-07-20 Thread Alec J Summers
, Principal Group Lead, Cybersecurity Operations and Integration MITRE - Solving Problems for a Safer World™ From: Alec J Summers Date: Wednesday, July 13, 2022 at 1:08 PM To: CAPEC Researcher Discussion Subject: CWE/CAPEC Definitions Dear CAPEC Research

RE: CWE/CAPEC Definitions

2022-07-15 Thread James Pangburn
: Friday, July 15, 2022 8:34 AM To: Alec J Summers Cc: capec-research-list@mitre.org Subject: Re: CWE/CAPEC Definitions EXTERNAL MAIL I did not copy everyone on my response… Jim Whitmore On Jul 15, 2022, at 10:20 AM, Jim Whitmore mailto:jj-whitm...@comcast.net>> wrote:  Alec, thanks for th

Re: CWE/CAPEC Definitions

2022-07-15 Thread Alexander W. Miranda
imarily in software, by extension in computer > hardware and business logic* > > > > -- > > Greg Gutman (CTR), CISSP > > Email: gregoriy.gut...@associates.fema.dhs.gov > > > > *From:* Alec J Summers > *Sent:* Wednesday, July 13, 2022 1:09 PM > *To:* CAPE

Re: CWE/CAPEC Definitions

2022-07-15 Thread Jim
I did not copy everyone on my response… Jim Whitmore > On Jul 15, 2022, at 10:20 AM, Jim Whitmore wrote: > >  > Alec, thanks for the note. These terms overlap and are sometimes the source > of confusion. I have been working with these resources for several years. My > observation is that t

Re: CWE/CAPEC Definitions

2022-07-15 Thread Covert, Ed
rbros.com> Please note: While I may send an email outside of traditional working hours, I do NOT expect a response outside of your own. From: Gutman, Gregoriy (CTR) Date: Friday, July 15, 2022 at 7:20 AM To: Alec J Summers , CAPEC Researcher Discussion Subject: RE: CWE/CAPEC Definitions [C

RE: CWE/CAPEC Definitions

2022-07-15 Thread Gutman, Gregoriy (CTR)
<mailto:gregoriy.gut...@associates.fema.dhs.gov> From: Alec J Summers Sent: Wednesday, July 13, 2022 1:09 PM To: CAPEC Researcher Discussion Subject: CWE/CAPEC Definitions CAUTION: This email originated from outside of DHS. DO NOT click links or open attachments unless you recognize and/or tru

CWE/CAPEC Definitions

2022-07-13 Thread Alec J Summers
Dear CAPEC Research Community, I hope this email finds you well. Over the past few months, the CWE/CAPEC User Experience Working Group has been working to modernize our programs through a variety of activities. One such activity is harmonizing the definitions on our sites for some of our key t