Threat
A specifically-scoped opportunity for a negative impact to the organization.
Role
Threats name concrete ways harm can occur—tied to capabilities and vectors, and later mitigated by controls and treated as organisational risk.
Examples
Disclosure of sensitive or non-public information
Employee contribution could expose credentials, client data or internal architecture via a public commit. The threat links to publication capabilities and sensitive-commit vectors, and maps to FINOS OSR data-leakage risk for external reporting.
Source: Disclosure of Sensitive or Non-Public Information (sensitive-data-disclosure) in FOSS Contribution Threat Catalog.
Contribution under an unapproved license
Software is contributed under a license the company has not approved, creating legal and IP exposure. Controls for approved licenses and legal review mitigate this threat.
Source: Contribution Under Unapproved or Incompatible License (unapproved-license-contribution) in FOSS Contribution Threat Catalog.
Ungoverned or unapproved contribution activity
Contribution proceeds without OSPO registration or approval—bypassing the governance process that other controls assume is in place.
Source: Ungoverned or Unapproved Contribution Activity (ungoverned-contribution-activity) in FOSS Contribution Threat Catalog.
Data exfiltration via insecure lifecycle policies
Misconfigured lifecycle policies may unintentionally allow data to be exfiltrated or destroyed prematurely—availability loss and potential exposure of sensitive data. The threat is scoped to lifecycle-policy capabilities on object storage.
Source: Data Exfiltration via Insecure Lifecycle Policies (CCC.ObjStor.TH01) in FINOS CCC Object Storage.
Access granted to unauthorized users
Access-control logic may be misconfigured or manipulated so unauthorized entities reach restricted data or child resources—impacting confidentiality, integrity or availability. Imported into the object-storage catalog from CCC Core and tied to access-control capabilities.
Source: Access is Granted to Unauthorized Users (CCC.Core.TH01) in FINOS CCC Object Storage.
Data intercepted in transit
Data transmitted by the service can be collected or modified along the transmission path if not properly protected—scoping confidentiality and integrity impact to transit, not at-rest storage alone.
Source: Data is Intercepted in Transit (CCC.Core.TH02) in FINOS CCC Object Storage.
Links upstream
- Capability, Vector
- External risk taxonomies via mapping references
Links downstream
Anti-patterns
Threats with no enabling capability
A threat that cannot say which system ability makes it possible. Controls then have nowhere concrete to attach.
Collapsing threat and risk
Using business risk language (“strategic risk”) where a technology-specific threat belongs—or the reverse. Keep Layer 2 and Layer 3 distinct.