authorization-testing

分类: 测试与安全 | 上传者: anshumanbhanshumanbh | 下载: 0 | 版本: v1.0(最新)

Validate authorization failures including IDOR, privilege escalation, and missing access controls. Test by attempting unauthorized access with lower-privileged credentials. Use when testing CWE-639 (IDOR), CWE-269 (Improper Privilege Management), CWE-862 (Missing Authorization), CWE-863 (Incorrect Authorization), CWE-284 (Improper Access Control), CWE-285 (Improper Authorization), or CWE-425 (Direct Request / Forced Browsing) findings.

更新日志: Source: GitHub https://github.com/anshumanbh/securevibes

目录结构

当前层级: packages/core/securevibes/skills/dast/authorization-testing/

SKILL.md

登录后下载/点赞/收藏 ❤ 257 | ★ 0
评论 0

请先登录后评论。

还没有评论,快来第一个发言吧。