Lecture-1 1 (OWASP)
Lecture-1 1 (OWASP)
https://www.blackduck.com/glossary/what-is-owasp-top-10
Dr.Vikash Kumar, Dept. of CSE Computer and Network Security
Broken Access Control
Vulnerabilities in authentication (login) systems.
A weakness that allows an attacker to gain access to user
accounts
Cause?
Cause?
Weak EA
Implementation flaws
Compromised endpoints
Insufficient Randomness
Cause?
Weak EA
Implementation flaws
Compromised endpoints
Insufficient Randomness
Prevention?