All ENISA publications
ENISA-STL-2025-03-sD.25-i02

Publication: enisa-stl-2025-03 Space Threat Landscape

Full text

The control text is third-party content; see the official source for the full wording.

Mapped SPARTA techniques

7 techniques

  • EX-0005.01Design FlawsST0004
    mitigates
    high

    Vulnerability management identifies, validates, and records design-flaw exposures with a defined disclosure-and-remediation process.

  • EX-0008Time Synchronized ExecutionST0004
    addresses
    moderate

    Vulnerability management is a relevant security process, but its scope is collecting and evaluating known technical vulnerabilities, not detecting the bespoke time-triggered implant EX-0008 uses, so addresses rather than mitigates.

  • EX-0009Exploit Code FlawsST0004
    addresses
    high

    Vulnerability management identifies, validates, and tracks both inherited and own software vulnerabilities, the catalog from which EX-0009 picks.

  • EX-0009.02Operating SystemST0004
    mitigates
    high

    Vulnerability management identifies, validates, and tracks OS-level defects including those potentially inherited from external sources, the catalog EX-0009.02 leverages.

  • Vulnerability management is the canonical operator-side defense against publicly known defects in COTS/FOSS components — the literal subject of EX-0009.03.

  • RD-0003.01Exploit/PayloadST0002
    addresses
    high

    Vulnerability management on the operator's systems closes the gaps adversary-obtained exploits target and reduces their value, but it does not prevent the resource-development acquisition of exploits RD-0003.01 performs, so addresses rather than mitigates.

  • Vulnerability Management governs the operator collection and evaluation of known vulnerabilities, the domain REC-0008.03 mines, reducing exposure rather than actively defending against the reconnaissance itself.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.