This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Cornucopia - Ecommerce Website - C 8

From OWASP
Jump to: navigation, search
Cornucopia - Ecommerce Website C 8.png

Suit: Cornucopia

Card/Value: 8

Description:

David can bypass the application to gain access to data because the network and host infrastructure, and supporting services/applications, have not been securely configured, the configuration rechecked periodically and security patches applied, or the data is stored locally, or the data is not physically protected.

Technical Note:

NB: The key concept for this card is host/network hardening, configuration and patching. See C 10 instead for software hardening, configuration and patching.

References:

OWASP SCP OWASP ASVS OWASP AppSensor CAPEC SAFECODE
151 - RE1 37 -
152 RE2 220
156 289
160 310
161 436
173
174
175
176
177


« Previous Card | Cornucopia | Next Card »