Skip to main content

WF-E-2 — Attacker forces schema downgrade (v2 → v1) to bypass ECDH wrapping

Component: Wallet Frontend. Mitigations: Format upgrade is client-driven; backend stores whatever the client submits. Action: Validate minimum container schema version server-side

PropertyValue
SectionElevation of Privilege
Ownerplatform

Mapped Controls

ControlTitle
SID-DATA-03Credential Revocation via Token Status List

Source: STRIDE analysis (April 2026), architecture/stride-threat-model.md