risk

User error and mishandling of sensitive information

Authorized users make mistakes — incorrect data entry, misconfiguration, improper procedures, incorrect privilege settings, or spilling/mishandling sensitive information — causing harm to information assets without malicious intent.

In catalog since 2026-09-17T22:28:00Z · Last changed 2026-09-17T22:28:00Z (f368a6cce277)

Record JSON · Open in map · Data retrieval guide

Catalog revision: 791ff2dd3a45707290badee660f185e514d15f1cf518908628f425c2f2c56ee4. A connection does not establish full coverage.

Attributes

category
operational
domain
  • Awareness & Training
  • Data Protection & Privacy
  • Logging, Monitoring & Detection
taxonomy
  • iso-27005-threat
  • nist-800-30-threat-event
  • nist-800-30-threat-source
  • iso-27005-vulnerability
inherent_rating
high

Details

risk_id
aware-user-error-mishandling
category
operational
likelihood
high
impact
medium
inherent_rating
high
treatment
mitigate
taxonomies
  • iso-27005-threat
  • nist-800-30-threat-event
  • nist-800-30-threat-source
  • iso-27005-vulnerability

Source

No record-specific source URL is provided.

Connections