Transcription of OWASP Top 10 - 2013
{{id}} {{{paragraph}}}
O About OWASP Copyright and License Copyright 2003 2013 The OWASP Foundation This document is released under the Creative Commons Attribution ShareAlike license. For any reuse or distribution, you must make it clear to others the license terms of this work. Foreword Insecure software is undermining our financial, healthcare, defense, energy, and other critical infrastructure. As our digital infrastructure gets increasingly complex and interconnected, the difficulty of achieving application security increases exponentially. We can no longer afford to tolerate relatively simple security problems like those presented in this OWASP Top 10. The goal of the Top 10 project is to raise awareness about application security by identifying some of the most critical risks facing organizations.
3) We broadened Failure to Restrict URL Access from the 2010 OWASP Top 10 to be more inclusive: + 2010-A8: Failure to Restrict URL Access is now 2013-A7: Missing Function Level Access Control – to cover all of function level access control. There are many ways to specify which function is being accessed, not just the URL.
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}