All ENISA publications
ENISA-STL-2025-03-sD.23-i01

Publication: enisa-stl-2025-03 Space Threat Landscape

Full text

The control text is third-party content; see the official source for the full wording.

Mapped SPARTA techniques

24 techniques

  • DE-0003.07Cryptographic ModesST0006
    mitigates
    moderate

    Communications security ensures secure protocols persist regardless of cryptographic-mode selectors, denying the desynchronisation attack.

  • DE-0004MasqueradingST0006
    mitigates
    high

    Communications security with imitative/manipulative deception detection identifies and rejects masqueraded transmissions based on signal parameters.

  • EX-0001ReplayST0004
    addresses
    high

    Communications security with detection of imitative deception flags and rejects replayed wireless transmissions.

  • Communications security with secure-protocol mandates and crypto-bypass prevention directly defeats algorithm-fallback and null-cipher manipulation.

  • Communications security is relevant to the communications-protection domain, but content confidentiality/integrity does not actively defeat the traffic-flow analysis EXF-0002.03 performs.

  • EXF-0003Signal InterceptionST0008
    addresses
    high

    Communications security with confidentiality preservation during transmission directly defeats interception of payload products and command/ack exchanges.

  • Communications security on uplinks (including encryption to prevent eavesdropping of telecommands) directly defeats uplink-exfiltration content recovery.

  • Communications security maintains downlink confidentiality during preparation for transmission and reception, defeating the recording-and-decode workflow EXF-0003.02 relies on.

  • Communications security is relevant to the secondary-link domain EXF-0004 abuses, but the prevent-unauthorized-disclosure (confidentiality) excerpt does not actively prevent covert content embedding in those channels, which needs authentication and integrity, so addresses rather than mitigates.

  • Communications security explicitly covers Inter-Satellite Links: secure protocols on crosslinks defeat traffic injected from a compromised neighbor.

  • Communications security on backup TT&C chains preserves the same secure-protocol posture, denying the differential exploitation IA-0004 relies on.

  • IA-0004.02ReceiverST0003
    addresses
    high

    Communications security on the backup receiver path preserves the same encryption and authentication posture, denying the differential-acceptance window IA-0004.02 relies on.

  • IA-0008Rogue External EntityST0003
    mitigates
    high

    Communications security with imitative-deception rejection identifies and rejects deliberate attempts to imitate authorised transmissions.

  • IA-0008.01Rogue Ground StationST0003
    mitigates
    moderate

    Communications security with imitative-deception detection on RF signal parameters surfaces transmissions that mimic the operator's emissions.

  • IA-0008.02Rogue SpacecraftST0003
    addresses
    high

    Communications security on crosslink-compatible signals defeats a rogue spacecraft attempting to advertise services as a trusted neighbor.

  • IMP-0006TheftST0009
    addresses
    high

    Communications security with confidentiality preservation during transmission directly defeats interception of mission-critical data on the downlink path.

  • Communications security on inter-satellite links defeats traffic from a compromised neighbor attempting to reach gateway functions on adjacent vehicles.

  • Communications security with strong cryptographic mechanisms denies adversary-built equipment the ability to issue accepted commands, but RD-0001.01's defining act is assembling the ground stack, which the control does not interdict; passive collection and active probing remain available. The control blunts downstream use rather than the defining vector, so the relationship is addresses.

  • Communications security with strong cryptographic mechanisms renders rented commercial ground-station services ineffective for hostile commanding without mission keys, but RD-0001.02's defining act is renting station access, which the control does not interdict; the rented station retains collection utility. The control blunts downstream commanding rather than the defining vector, so the relationship is addresses.

  • Communications security mandates secure protocols and crypto-bypass prevention that defeat the link reconnaissance REC-0003 performs.

  • Communications security mandates secure command protocols with strong cryptographic mechanisms that limit what reconnaissance of telecommand framing can yield.

  • REC-0005EavesdroppingST0001
    mitigates
    high

    Communications security with strong cryptographic mechanisms directly defeats RF and packet eavesdropping by preventing unauthorized disclosure during transmission.

  • Communications Security governs uplink communications and is relevant to REC-0005.01 domain, but the cited excerpt concerns identifying and rejecting imitative or manipulative deception and does not actively counter passive uplink interception, so addresses rather than mitigates.

  • Communications security with confidentiality preservation during transmission directly defeats downlink intercept of housekeeping telemetry and payload data.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.