CORNUCOPIA (CK)

Grant can utilize the application to deny service to some or all of its users

CORNUCOPIA
K

Grant can utilize the application to deny service to some or all of its users

OWASP SCP

41,55

OWASP ASVS

2.2.1,11.1.3,11.1.4

OWASP AppSensor

UT1,UT2,UT3,UT4,STE3

CAPEC

-

SAFECODE

1

How to play?

Application-layer denial of service and other activities that adversely affect the application's users. Includes:

Account lockout. Spamming. Excessive resource consumption. Scalping. Sniping. Must involve the ecommerce application in the attack and thus excludes HTTP DoS (e.g. flood attacks, slow attacks).

Mappings

OWASP ASVS (4.0): 2.2.1 ,11.1.3 ,11.1.4

Capec: 2 ,25 ,119 ,125

OWASP SCP: 41,55

OWASP Appsensor: UT1,UT2,UT3,UT4,STE3

Safecode: 1

ASVS (4.0) Cheatsheetseries Index

ASVS V2.2 - General Authenticator Requirements

ASVS V11.1 - Business Logic Security Requirements

No suitable mappings were found.

Attacks

Password Guessing/Brute Force Attacks

Insider Threats

OWASP Cornucopia

  • OWASP Cornucopia is a mechanism in the form of a card game to assist software development teams identify security requirements in Agile, conventional and formal development processes. It is language, platform and technology-agnostic, and is free to use.
  • OWASP Cornucopia is licensed under the Creative Commons Attribution-ShareAlike 3.0 license, so you can copy, distribute and transmit the work, and you can adapt it, and use it commercially, but all provided that you attribute the work and if you alter, transform, or build upon this work, you may distribute the resulting work only under the same or similar licence to this one.
  • © 2012-2025 OWASP Foundation. The Open Worldwide Application Security Project (OWASP) is a nonprofit foundation that works to improve the security of software.