Security Foundations • 03 / 09

The DAD Triad

Every meaningful attack targets one or more elements of the CIA Triad. DAD is the adversarial mirror — mapping attacks directly to what they compromise.

CIA (Defense)  ↔  DAD (Attack)
C

Confidentiality

Only authorized parties access the data.

I

Integrity

Data is accurate and unmodified.

A

Availability

Systems accessible when needed.

D

Disclosure

Unauthorized exposure of sensitive data to unintended parties.

A

Alteration

Unauthorized modification of data — records, transactions, config.

D

Destruction / Denial

Making systems or data unavailable to legitimate users.

Attack on Confidentiality ConfidentialityDisclosure
Attack on Integrity IntegrityAlteration
Attack on Availability AvailabilityDestruction

Patient Records — All Three Attacks

📤 Disclosure Attack

An attacker exfiltrates patient medical records and dumps them publicly online. The healthcare provider faces legal liability, compliance violations, and loss of patient trust — all from a single disclosure event.

✏ Alteration Attack

An attacker modifies patient records — changing medications, allergies, or diagnoses. The next clinician who reads those records may administer the wrong treatment. This alteration attack can be life-threatening.

🚫 Destruction / Denial Attack

A fully paperless medical facility is hit with ransomware. EHR systems go offline. Staff cannot access any patient history. The entire facility stalls — appointments cancelled, care degraded, safety at risk.