NIST 800-53 r5 · Controls catalogue · Family AC
AC-23Data Mining Protection
Employ {{ insert: param, ac-23_odp.01 }} for {{ insert: param, ac-23_odp.02 }} to detect and protect against unauthorized data mining.
Last updated: 22 August 2026 07:11 UTC
Implementations targeting this control (0)
- No implementations targeting this control yet.
ATT&CK techniques this control mitigates (15)
- T1005 Data from Local System Collection
- T1025 Data from Removable Media Collection
- T1041 Exfiltration Over C2 Channel Exfiltration
- T1048 Exfiltration Over Alternative Protocol Exfiltration
- T1048.002 Exfiltration Over Asymmetric Encrypted Non-C2 Protocol Exfiltration
- T1048.003 Exfiltration Over Unencrypted Non-C2 Protocol Exfiltration
- T1052 Exfiltration Over Physical Medium Exfiltration
- T1052.001 Exfiltration over USB Exfiltration
- T1213 Data from Information Repositories Collection
- T1213.001 Confluence Collection
- T1213.002 Sharepoint Collection
- T1213.004 Customer Relationship Management Software Collection
- T1213.005 Messaging Applications Collection
- T1552.007 Container API Credential Access
- T1567 Exfiltration Over Web Service Exfiltration
Weaknesses this control addresses (6)AI-assisted
CWEs ranked by how often they appear in real CVEs. The rationale describes how this control reduces exploitability of each weakness class.
| CWE | Name | CVEs | Why this control addresses it |
|---|---|---|---|
CWE-200 | Exposure of Sensitive Information to an Unauthorized Actor | 11,000+ | Data mining protection mechanisms detect and block unauthorized bulk extraction of sensitive data, directly mitigating exposure to unauthorized actors. |
CWE-284 | Improper Access Control | 6,900+ | Provides monitoring and protection against data mining patterns that exploit improper access controls to extract data. |
CWE-285 | Improper Authorization | 1,500+ | Detects and blocks data mining attempts that violate intended authorization boundaries for data access. |
CWE-668 | Exposure of Resource to Wrong Sphere | 800+ | Protects against data mining that would expose resources to unauthorized spheres by enforcing detection and controls. |
CWE-497 | Exposure of Sensitive System Information to an Unauthorized Control Sphere | 300+ | Employs detection to prevent unauthorized mining of sensitive system information from being exfiltrated to external control spheres. |
CWE-359 | Exposure of Private Personal Information to an Unauthorized Actor | 200+ | The control detects and protects against mining of private personal information, reducing unauthorized exposure of PII. |
Top CVEs where this control is the strongest mitigation
| CVE | Risk | CVSS | EPSS | Match |
|---|---|---|---|---|
CVE-2025-59352 | 7.4 | 9.8 | 0.0073 | good |
CVE-2025-69200 UPD | 6.2 | 7.5 | 0.0205 | good |
CVE-2024-2088 UPD | 6.0 | 8.5 | 0.0034 | good |
CVE-2023-7072 UPD | 5.9 | 7.5 | 0.0062 | good |
CVE-2024-13255 UPD | 5.9 | 7.5 | 0.0050 | good |
CVE-2026-30778 | 5.9 | 7.5 | 0.0054 | good |
CVE-2025-29981 UPD | 5.8 | 7.5 | 0.0037 | good |
CVE-2025-36575 UPD | 5.7 | 7.5 | 0.0029 | good |
CVE-2026-33530 | 5.5 | 7.7 | 0.0020 | good |
CVE-2026-16520 | 5.5 | 8.7 | 0.0039 | good |
CVE-2024-38892 UPD | 5.1 | 6.5 | 0.0040 | good |
CVE-2024-1287 UPD | 5.1 | 6.5 | 0.0052 | good |
CVE-2024-20388 UPD | 4.5 | 5.3 | 0.0043 | good |
CVE-2024-38895 UPD | 4.4 | 5.3 | 0.0039 | good |
CVE-2024-38897 UPD | 4.4 | 5.3 | 0.0040 | good |
CVE-2026-25050 UPD | 4.4 | 5.3 | 0.0037 | good |
CVE-2025-64528 UPD | 4.3 | 5.3 | 0.0026 | good |
CVE-2026-3546 UPD | 4.3 | 5.3 | 0.0023 | good |
CVE-2026-42797 UPD | 4.0 | 4.9 | 0.0044 | good |
CVE-2025-64504 UPD | 3.9 | 5.0 | 0.0032 | good |
CVE-2025-68456 | 6.9 | 9.1 | 0.0049 | good |
CVE-2024-6400 UPD | 5.9 | 7.5 | 0.0063 | good |
CVE-2025-25205 UPD | 6.8 | 8.2 | 0.0433 | good |
CVE-2026-25703 | 5.6 | 7.3 | 0.0022 | good |
CVE-2026-70473 | 5.5 | 8.3 | 0.0025 | good |