Publication: enisa-stl-2025-03 Space Threat Landscape
Full text
The control text is third-party content; see the official source for the full wording.
Mapped SPARTA techniques
9 techniques
MFA defeats the credential-only path that defines credentialed evasion.
MFA on mission-control accounts limits the credential-only path to systems EXF-0007 mirrors and scrapes.
Multi-factor authentication on backup-site operator accounts limits credential-only compromise of the standby ground segment.
MFA on mission-control accounts blocks the credential-only path to operator workstations and identity providers IA-0007 targets.
MFA on credentials raises the cost of reusing a single set of credentials to traverse boundaries.
MFA on operator and automation accounts limits long-lived credential-only persistence in mission ground infrastructure.
MFA limits the value of any single harvested credential, breaking the credentialed-persistence pathway.
Multi-factor authentication on mission-control accounts limits credential-only compromise of the mission-operated ground system.
Multi-factor authentication makes harvested credentials substantially less useful for masquerading on ground or cloud accounts.