Cyber Posture

NIST 800-53 r5 · Controls catalogue · Family RA

RA-6Technical Surveillance Countermeasures Survey

Employ a technical surveillance countermeasures survey at {{ insert: param, ra-06_odp.01 }} {{ insert: param, ra-06_odp.02 }}.

Last updated: 09 May 2026 03:25 UTC

Implementations targeting this control (0)

ATT&CK techniques this control mitigates (0)

Weaknesses this control addresses (7)AI

CWEs ranked by how often they appear in real CVEs. The rationale describes how this control reduces exploitability of each weakness class.

CWE Name CVEs Why this control addresses it
CWE-200Exposure of Sensitive Information to an Unauthorized Actor10,204TSCM surveys directly detect and remove covert collection devices that would otherwise expose sensitive information to unauthorized actors.
CWE-668Exposure of Resource to Wrong Sphere779By locating and eliminating surveillance devices, TSCM prevents resources from being exposed to an adversary-controlled sphere.
CWE-506Embedded Malicious Code80TSCM directly targets and removes embedded malicious hardware or code planted for ongoing technical surveillance.
CWE-912Hidden Functionality79TSCM surveys discover and eliminate hidden surveillance functionality that would otherwise remain undetected in the environment.
CWE-300Channel Accessible by Non-Endpoint53Periodic TSCM surveys identify unauthorized access points or taps that make communication channels reachable by non-endpoint adversaries.
CWE-420Unprotected Alternate Channel37TSCM surveys detect and neutralize unprotected alternate channels introduced by surveillance equipment or modifications.
CWE-419Unprotected Primary Channel12TSCM employment uncovers unprotected primary channels that have been physically or technically compromised for surveillance.

Top CVEs where this control is the strongest mitigation

CVE Risk CVSS EPSS Match
No CVEs annotated to this control yet — the per-CVE backfill is in progress.

Other controls in family RA

RA-1 RA-10 RA-2 RA-3 RA-4 RA-5 RA-7 RA-8 RA-9