NB: The key concept for this card is protection of stored data.
Eoin can access stored business data (e.g. passwords, session identifiers, PII, cardholder data) because it is not securely encrypted or securely hashed
Owasp ASVS (4.0): 2.4.1 ,6.2.2 ,6.2.3 ,8.3.4
Owasp SCP: 30,31,70,133,135
Owasp Appsensor:
Safecode: 21,29,31
ASVS V2.4 - Credential Storage Requirements
ASVS V8.3 - Sensitive Private Data
Session Hijacking (Man-in-the-Middle)
Loading comments 0%