Verify controls for CWE-1304 with SSDF evidence
Use NIST SSDF verification and vulnerability-response practices to detect CWE-1304, Improperly Preserved Integrity of Hardware Configuration State During a Power Save/Restore Operation, throughout the product lifecycle. Derive review questions, static or dynamic checks, and negative tests from the CWE's causal behavior; define the components and lifecycle stages each check covers; and retain findings with enough evidence to distinguish the root cause from symptoms and impacts. Track escapes and false negatives, then improve the verification plan after every confirmed occurrence.
NIST SP 800-218 Secure Software Development Framework — National Institute of Standards and Technology