Showing posts with label Mass Assignment. Show all posts
Showing posts with label Mass Assignment. Show all posts

Saturday, 26 January 2013

Should Mass Assignment be an OWASP Top 10 Vulnerability?

I was just having a thread with Dave (who is working on the OWASP Top 10 2013) about the idea that Mass Assignment vulnerabilites should be part of the next OWASP top 10, and here is his view: