Please enjoy this encore of Word Notes.
Software users are allowed access to data or functionality contrary to the defined zero trust policy by bypassing or manipulating the installed security controls.
Learn more about your ad choices. Visit megaphone.fm/adchoices
--------
7:30
OWASP security misconfiguration (noun)
Please enjoy this encore of Word Notes.
The state of a web application when it's vulnerable to attack due to an insecure configuration.
CyberWire Glossary link: https://thecyberwire.com/glossary/owasp-security-misconfiguration
Audio reference link: “What Is the Elvish Word for Friend?” Quora, 2021.
Learn more about your ad choices. Visit megaphone.fm/adchoices
--------
7:03
OWASP insecure design (noun)
Please enjoy this encore episode of Word Notes.
A broad OWASP Top 10 software development category representing missing, ineffective, or unforeseen security measures.
CyberWire Glossary link: https://thecyberwire.com/glossary/owasp-insecure-design
Audio reference link: “Oceans Eleven Problem Constraints Assumptions.” by Steve Jones, YouTube, 4 November 2015.
Learn more about your ad choices. Visit megaphone.fm/adchoices
--------
8:19
OWASP injection (noun)
Please enjoy this encore of Word Notes.
A broad class of attack vectors, where an attacker supplies input to an applications command interpreter that results in unanticipated functionality.
CyberWire Glossary link: https://thecyberwire.com/glossary/owasp-injection
Audio reference link: “APPSEC Cali 2018 - Taking on the King: Killing Injection Vulnerabilities” YouTube Video. YouTube, March 19, 2018.
Learn more about your ad choices. Visit megaphone.fm/adchoices
--------
6:32
OWASP cryptographic failures (noun)
Please enjoy this encore of Word Notes.
Code that fails to protect sensitive information.
CyberWire Glossary link: https://thecyberwire.com/glossary/owasp-cryptographic-failure
Audio reference link: Vandana Verma. “OWASP Spotlight - Project 10 - Top10.” YouTube Video. YouTube, January 4, 2021.
Learn more about your ad choices. Visit megaphone.fm/adchoices