ASP.NET Security
The STRIDE Threat Model ????Spoofing identity ????Tampering with data ????Repudiation ????Information disclosure ????Denial of service ????Elevation of privilege Secure Programming Principles ????Don’t trust user input ????Assume all user input is malicious Handling User Input: Why Worry? ????User data attacks: ????Reveal implementation details ????Create malicious data ????Execute malicious script ????Access restricted (more…)
October 1, 2009 | Posted by admin
Categories:
Tags: