All ENISA publications
ENISA-STL-2025-03-sD.25-i10

Publication: enisa-stl-2025-03 Space Threat Landscape

Full text

The control text is third-party content; see the official source for the full wording.

Mapped SPARTA techniques

31 techniques

  • Integrity-checking on flight code surfaces patches and bypasses to FDIR routines that DE-0001 introduces.

  • Integrity checking covering proper management of information and records detects modification of housekeeping fields, counters, and mode indicators.

  • Integrity checking validates baselined mission software, programmable logic, and firmware and is relevant to the integrity domain, but the Vehicle Command Counter is a live runtime telemetry value outside the signed baseline, so the excerpt does not show active detection of runtime VCC manipulation.

  • DE-0003.08Received CommandsST0006
    mitigates
    high

    Integrity checking covering proper management of information and records detects modification of executed-command histories and file records.

  • Integrity checking on watchdog configuration values detects unauthorised tampering used to extend or disable timeouts.

  • Integrity checking on training corpora and packaged ML model artefacts detects poisoned data before deployment.

  • DE-0006Modify WhitelistST0006
    mitigates
    high

    Integrity checking on whitelist configuration data detects unauthorised modifications attempting to add malicious software.

  • DE-0007Evasion via RootkitST0006
    addresses
    high

    Integrity checking on flight software detects rootkit-installed API/syscall hooks and patched message queues that bias telemetry before downlink.

  • DE-0008Evasion via BootkitST0006
    addresses
    high

    Integrity checking covering pre-OS boot artefacts directly defeats bootkit shaping of what subsequent components observe.

  • Integrity-checking mechanisms on mission software and firmware detect modification of authentication code paths and gateway processors.

  • Integrity-checking mechanisms covering programmable logic and firmware images directly defeat modifications to boot ROMs, bootloaders, and OTP fuses.

  • Integrity checks on firmware, bitstreams, and programmable-logic images detect corruption of trust anchors below the application stack.

  • EX-0006Disable/Bypass EncryptionST0004
    mitigates
    moderate

    Integrity checking surfaces substitution of crypto libraries or tables during boot or update — one EX-0006 path.

  • EX-0007Trigger Single Event UpsetST0004
    addresses
    moderate

    Integrity checks (ECC, software/firmware validation) detect transient bit flips that EX-0007 attempts to convert into persistent compromise.

  • EX-0010Malicious CodeST0004
    addresses
    high

    Integrity-checking mechanisms across mission software, programmable logic, and firmware detect injected binaries, hooks, and modified images.

  • EX-0010.03RootkitST0004
    addresses
    high

    Integrity-checking mechanisms detect rootkit-induced kernel hooks, syscall patches, and modified message queues by comparing against signed baselines.

  • EX-0010.04BootkitST0004
    addresses
    high

    Integrity checks across mission software and firmware including pre-OS boot artefacts directly defeat bootkit substitution of boot images and image-selection logic.

  • EX-0012Modify On-Board ValuesST0004
    addresses
    moderate

    Integrity checking on mission software and firmware extends to the live and persistent data structures EX-0012 modifies (registers, tables, schedules, autonomy rules).

  • EX-0012.01RegistersST0004
    addresses
    moderate

    Integrity checking validates the integrity of baselined mission software, programmable logic, and firmware, which is relevant to the integrity domain EX-0012.01 attacks, but internal registers hold live runtime values outside the signed baseline, so the excerpt does not show active detection of runtime register modification.

  • EX-0012.03Memory Write/LoadsST0004
    addresses
    high

    Integrity-checking mechanisms validate mission software and firmware, the targets of memory write/load operations EX-0012.03 issues.

  • EX-0012.04App/Subscriber TablesST0004
    mitigates
    moderate

    Integrity checking on tables and configuration data detects unauthorised modifications to subscriber lists.

  • Integrity checks on payload and science data products detect modification of the values EX-0012.06 alters in storage.

  • EX-0012.11Watchdog Timer (WDT)ST0004
    addresses
    moderate

    Integrity-checking surfaces unauthorised modifications to watchdog timer values that EX-0012.11 issues.

  • Integrity checking on training datasets and packaged model artefacts detects unauthorised modifications before models are deployed.

  • Integrity checking on programmable logic and firmware including SDR DSP chains, FEC framing, and routing tables surfaces unauthorised modifications to communications configuration.

  • Integrity checking on programmable logic devices including SDR bitstreams and DSP modules detects covert-channel injections that EXF-0006.01 packages as legitimate updates.

  • EXF-0006.02TransponderST0008
    mitigates
    high

    Integrity checking on regenerative-payload routing tables and QoS rules detects edits that mirror traffic to unauthorised endpoints.

  • Integrity-checking mechanisms validate mission software, programmable-logic, and firmware images, the artefacts IA-0007.01 substitutes.

  • Integrity checking surfaces telemetry-value modifications and falsified evidence that IMP-0001 introduces.

  • PER-0001Memory CompromiseST0005
    addresses
    high

    Integrity-checking on mission software and firmware including non-volatile images, fallback partitions, and configuration words detects persistent payload reinjection across resets.

  • PER-0002BackdoorST0005
    mitigates
    moderate

    Integrity checking detects backdoors introduced through unauthorised modifications to flight binaries during integration or on-orbit updates.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.