#21 File hosting

Otwarty
otworzone 5 lat temu przez sindre · 0 komentarzy
sindre skomentował(-a) 5 lat temu

Although not an OWASP v4 code, File Hosting is a major part of modern intelligent threat actors. If your server hosts files instead of just letting users download them they can be used as part of spear-phishing attacks or as part of reconnaissance. This webpage should default to always downloading a file, even if accessed directly, or alternatively, deny access if a file is access directly.

Although not an OWASP v4 code, File Hosting is a major part of modern intelligent threat actors. If your server hosts files instead of just letting users download them they can be used as part of spear-phishing attacks or as part of reconnaissance. This webpage should default to always downloading a file, even if accessed directly, or alternatively, deny access if a file is access directly.
sindre dodaje to do kamienia milowego Optional vulnerabilities 5 lat temu
sindre dodano etykietę
webpy
5 lat temu
sindre dodano etykietę
bug
5 lat temu
sindre dodano etykietę
security misconfiguration
5 lat temu
sindre zmienia kamień milowy z Optional vulnerabilities na Required fixes 5 lat temu
sindre zmienia kamień milowy z Required fixes na Optional vulnerabilities 5 lat temu
Zaloguj się, aby dołączyć do tej rozmowy.
Ładowanie…
Anuluj
Zapisz
Nie ma jeszcze treści.