#21 File hosting

Aperto
aperto 5 anni fa da sindre · 0 commenti
sindre 5 anni fa ha commentato

Although not an OWASP v4 code, File Hosting is a major part of modern intelligent threat actors. If your server hosts files instead of just letting users download them they can be used as part of spear-phishing attacks or as part of reconnaissance. This webpage should default to always downloading a file, even if accessed directly, or alternatively, deny access if a file is access directly.

Although not an OWASP v4 code, File Hosting is a major part of modern intelligent threat actors. If your server hosts files instead of just letting users download them they can be used as part of spear-phishing attacks or as part of reconnaissance. This webpage should default to always downloading a file, even if accessed directly, or alternatively, deny access if a file is access directly.
sindre aggiunta alle pietre miliari Optional vulnerabilities 5 anni fa
sindre added the
webpy
label 5 anni fa
sindre added the
bug
label 5 anni fa
sindre added the
security misconfiguration
label 5 anni fa
sindre pietra miliare modificata da Optional vulnerabilities a Required fixes 5 anni fa
sindre pietra miliare modificata da Required fixes a Optional vulnerabilities 5 anni fa
Effettua l'accesso per partecipare alla conversazione.
Loading…
Annulla
Salva
Non ci sono ancora contenuti.