Carlos can use the application's notification services to launch phishing campaigns because notifications are not sanitized and validated according to best practices
Carlos can use the application's notification services to launch phishing campaigns because notifications are not sanitized and validated according to best practices
OWASP ASVS
-
OWASP AppSensor
-
CAPEC
-
SAFECODE
OWASP MASVS (2.1): CODE-4
OWASP MASTG (1.7): TEST-0025 ,TEST-0072
Safecode: -
No attacks registered!