NB: The key concept for this card is unencrypted storage of account credentials.
Justin can read credentials for accessing internal or external resources, services and others systems because they are stored in an unencrypted format, or saved in the source code
Owasp ASVS (4.0): 1.6.1 ,1.6.2 ,1.6.4 ,2.10.4 ,6.4.1 ,6.4.2
Capec: 116
Owasp SCP: 35,90,171,172
Owasp Appsensor:
Safecode: 21,29
ASVS V1.6 - Cryptographic Architectural Requirements
ASVS V2.1 - Password Security Requirements
Password Guessing/Brute Force Attacks
Session Hijacking (Man-in-the-Middle)
Loading comments 0%