Protect against automated threats to web applications such as:
Account aggregation. Account creation. Ad fraud. CAPTCHA bypass. Carding. Card cracking. Cashing out. Credential cracking. Credential stuffing. Denial of service. Expediting. Fingerprinting. Footprinting. Scalping. Scraping. Skewing. Sniping. Spamming. Token cracking. Vulnerability scanning. See also related automation attacks in Authentication AT 4 and AT 7.
Mike can misuse an application by using a valid feature too fast, or too frequently, or other way that is not intended, or consumes the application's resources, or causes race conditions, or over-utilizes a feature
Owasp ASVS (4.0): 11.1.3 ,11.1.4
Owasp SCP: 94
Owasp Appsensor: AE3,FIO1-2,UT2-4,STE1-3
Safecode: 1,35
ASVS V11.1 - Business Logic Security Requirements
Loading comments 0%