Skip to main content

SP-T-1 — Attacker modifies startup-loaded configuration artifacts on disk

Component: Policy Engine. Mitigations: Configuration artifacts loaded at startup; file access controlled by OS. Action: Sign or checksum startup-loaded configuration files; detect changes at startup

PropertyValue
SectionTampering
Ownerplatform

Mapped Controls

ControlTitle
SID-OPS-05Secure Configuration Management
SID-ACCESS-04SPOCP Policy-Based Query Authorization

Source: STRIDE analysis (April 2026), architecture/stride-threat-model.md