All ENISA publications
ENISA-STL-2025-03-sD.28-i01

Publication: enisa-stl-2025-03 Space Threat Landscape

Full text

The control text is third-party content; see the official source for the full wording.

Mapped SPARTA techniques

15 techniques

  • DE-0012Component CollusionST0006
    addresses
    high

    Supplier security management with ISMS audits scopes the supply-chain relationships under which component-collusion compromise must arise.

  • Supplier security management requires evidence of security posture from third-party stations and providers whose feed-mirroring or scraping enables EXF-0009.

  • Supplier security management is the umbrella supply-chain control governing the manufacturing, integration, and delivery contexts where IA-0001 inserts code or hardware.

  • Supplier security management requires evidence of security posture from board, module, and programmable-logic suppliers, the route IA-0001.03 exploits.

  • IA-0009Trusted RelationshipST0003
    addresses
    high

    Supplier security management requires evidence of security posture from the third parties whose compromise enables the IA-0009 inheritance pattern.

  • IA-0009.02VendorST0003
    addresses
    high

    Supplier security management with ISMS audits and reviews directly addresses vendor compromise as the IA-0009.02 vector.

  • IA-0013Compromise Host SpacecraftST0003
    addresses
    moderate

    Supplier security management on host-spacecraft providers establishes the audit baseline limiting host-side compromise propagation into hosted payloads.

  • LM-0006Launch Vehicle InterfaceST0007
    addresses
    moderate

    Supplier security management requires evidence of security posture from launch-vehicle providers and EGSE operators.

  • Supplier security management governs the contractual and audit posture of the legitimate-infrastructure providers an adversary attempts to compromise.

  • Supplier security management requires 3rd-party ground system operators to demonstrate security management posture before entering the mission's commanding pathway.

  • RD-0002.033rd-Party SpacecraftST0002
    addresses
    moderate

    Supplier security management on co-hosted spacecraft providers establishes the audit and standards baseline that limits compromise propagation.

  • REC-0004Gather Launch InformationST0001
    addresses
    moderate

    Supplier security management covers launch providers, integrators, range operators, and telemetry network providers whose pre-launch staff REC-0004 profiles.

  • Supplier security management is the umbrella supply-chain control that governs whose disclosures REC-0008 can mine.

  • REC-0008.01Hardware ReconST0001
    addresses
    high

    Supplier security management governs the hardware vendor ecosystem whose security practices REC-0008.01 reconnoitres.

  • REC-0008.04Business RelationshipsST0001
    addresses
    moderate

    Supplier security management documents and audits the contractual security relationships REC-0008.04 maps for leverage.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.