{"catalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","kind":"record","record":{"attributes":{"category":"technical","domain":"Network & Communications Security","type":"preventive"},"canonicalUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-NET-05","description":"Prevent unauthorized or unintended information transfer through shared system resources by clearing, sanitizing, or isolating resources between users and processes. Analyze the system for covert storage and timing channels, estimate their bandwidth, and reduce or eliminate identified channels that exceed acceptable thresholds.","details":{"control_category":"technical","control_type":"preventive","domain":"Network & Communications Security","guidance":[],"members":[{"control_id":"SC-4","coverage":"full","framework":"nist-800-53","relationship":"superset_of"},{"control_id":"SC-31","coverage":"full","framework":"nist-800-53","relationship":"superset_of"}],"statement":"Prevent unauthorized or unintended information transfer through shared system resources by clearing, sanitizing, or isolating resources between users and processes. Analyze the system for covert storage and timing channels, estimate their bandwidth, and reduce or eliminate identified channels that exceed acceptable thresholds.","title":"Prevent leakage via shared resources and covert channels","unified_id":"UC-NET-05"},"id":"uc:UC-NET-05","mapUrl":"https://controlsmap.com/?v=1&node=uc%3AUC-NET-05","sourceIds":["nist-800-53"],"sourceUrl":null,"title":"UC-NET-05 — Prevent leakage via shared resources and covert channels","type":"unified"},"relationships":[{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:3f95c9a723e1d23219dbfd9f3deeed28cfa4709548b8dc597d4a95a333ea5b11","properties":{},"sourceDetailPath":"/data/v1/records/wf-c50-4402d67a.json","sourceId":"wf:C50","targetDetailPath":"/data/v1/records/uc-uc-net-05-b8a440f7.json","targetId":"uc:UC-NET-05","type":"operates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:6223732d31ab0577a43debbec3bd57afeeda58c6f8cbe4888a8f941fc87aa6ee","properties":{},"sourceDetailPath":"/data/v1/records/wf-c9-75fb1752.json","sourceId":"wf:C9","targetDetailPath":"/data/v1/records/uc-uc-net-05-b8a440f7.json","targetId":"uc:UC-NET-05","type":"tests"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:6a24f23e8acebe7776fdb50904e3090f1114a1b3ea4e284289c28280fea24fbe","properties":{"rationale":"Clearing/sanitizing/isolating shared resources between users and processes directly prevents scavenging of data remnants used and deleted by cloud processes.","strength":"primary"},"sourceDetailPath":"/data/v1/records/uc-uc-net-05-b8a440f7.json","sourceId":"uc:UC-NET-05","targetDetailPath":"/data/v1/records/risk-net-cloud-multitenancy-exploit-d98521d5.json","targetId":"risk:net-cloud-multitenancy-exploit","type":"mitigates"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:6de343a8065b4dfcebdb2b8dc9acb590188f60ca672967b0d13e1570cba9bcea","properties":{"control_id":"SC-4","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-net-05-b8a440f7.json","sourceId":"uc:UC-NET-05","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-sc-4-20a40b1c.json","targetId":"ctrl:nist-800-53:SC-4","type":"maps_to"},{"expectedCatalogRevision":"24028ffcfc2b295fa1b08ee6caa84b765f0731b321496bf4f548c49ad2177028","id":"rel:98d71c9c5de72f07a9dde43e15b670ec718b8dade523cc15158305742d0b08cc","properties":{"control_id":"SC-31","coverage":"full","delta":null,"framework":"nist-800-53","provenance":{"defaultConfidence":"medium","defaultStatus":"active","direction":"canonical_to_source","mapper":"coworkcanvas-compliance-graph","note":"Each member is a documented relationship claim from the canonical unified control to a source control or guidance proposition. relationship: equal|superset_of (full) / intersects_with|subset_of (partial) / informs (guidance). confidence 'medium' = single-mapper, documented, not yet externally corroborated. source_version is the member framework's edition from the standard version register.","reviewDate":"2026-09-07"},"relationship":"superset_of","source_version":"Rev. 5"},"sourceDetailPath":"/data/v1/records/uc-uc-net-05-b8a440f7.json","sourceId":"uc:UC-NET-05","targetDetailPath":"/data/v1/records/ctrl-nist-800-53-sc-31-110d3b3d.json","targetId":"ctrl:nist-800-53:SC-31","type":"maps_to"}],"schemaVersion":1}
