...
6.2 Providing Cryptographic Functionality
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
This article provides a simple model to follow when implementing solutions to protect data at rest.
6.3 Password Storage Cheat Sheet
2 Guidancehttps://www.owasp.org/index.php/Password_Storage_Cheat_Sheet#Guidance2.1 Do
...
...
...
...
...
6.4 Transport Layer
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
...
3.1 Secure Internal Network Fallacy
...
...
- Tools
Learn More:
- OWASP Cryptographic Storage Cheat Sheet
- OWASP Password Storage Cheat Sheet
- OWASP Transport Layer Protection Cheat Sheet
- OWASP Testing Guide: Chapter on SSL/TLS Testing
- CWE Entry 310 on Cryptographic Issues
- CWE Entry 312 onCleartextStorage of Sensitive Information
- CWE Entry 319 onCleartextTransmission of Sensitive Information
- CWE Entry 326 on Weak Encryption