cra

Annex I, Part I, (2)(b)

Full text: this article's wording is third-party regulatory text. See the official source for the authoritative provision.

Mapped SPARTA techniques (2)

Techniques referencing this article

  • DE-0005Subvert Protections via Safe-ModeST0006
    addresses
    moderate
    inferred

    Authentication and access-management (2)(d) addresses DE-0005 by maintaining enforcement through safe-mode rather than relaxing acceptance; secure-by-default config (2)(b) bears on the contingency posture but does not block the safe-mode acceptance vector.

  • DE-0008Evasion via BootkitST0006
    relates to
    moderate
    direct

    Secure boot, root-of-trust, and verified boot chain are the (2)(b) 'secure by default configuration' realization that bootkit attacks specifically target.

Built 2026-07-25 from 216 techniques, 334 regulation articles, 125 ENISA controls, 2,610 framework controls, and 90 countermeasures.