Pramod can intercept credentials through misdirection because the app is vulnerable to attacks like Tapjacking, StrandHogg and/or URL scheme hijacking
Pramod can intercept credentials through misdirection because the app is vulnerable to attacks like Tapjacking, StrandHogg and/or URL scheme hijacking
OWASP ASVS
AUTH-1,CODE-4,PLATFORM-1,PLATFORM-3
OWASP AppSensor
TEST-0025,TEST-0030,TEST-0035,TEST-0072,TEST-0075
CAPEC
-
SAFECODE
OWASP MASVS (2.1): AUTH-1 ,CODE-4 ,PLATFORM-1 ,PLATFORM-3
OWASP MASTG (1.7): TEST-0025 ,TEST-0030 ,TEST-0035 ,TEST-0072 ,TEST-0075
Safecode:
No attacks registered!