June 2018
Intermediate to advanced
294 pages
7h 5m
English
|
Threat Description |
Threat action aimed to perform illegal operations in a system that lacks the ability to trace the prohibited operations. |
|
Threat Target |
Website (WordPress) functionalities. |
|
Attacker Steps |
An attacker can deny his/her attacks if the application does not support proper security logging. |
|
Counter-measure |
The application should:
|
|
Existing Counter-measure |
N/A - it's a new project. |
The DREAD review is as follows:
|
DREAD
|
Details
|
Score /10
|
|
Damage |
Some or little. |
2 |
|
Reproducibility |
Can be reproduced any time. |
7 |
|
Exploitability |
The attacker will need some experience in application ... |
Read now
Unlock full access