From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
Unlock the full course today
Join today to access over 24,100 courses taught by industry experts.
The OWASP Top 10: 6-10
From the course: ISC2 Certified Secure Software Lifecycle Professional (CSSLP) (2023) Cert Prep
The OWASP Top 10: 6-10
- [Host] Knowing OWASP's top five web application security risks is a good start, but knowing all 10 is even better. Let's take a closer look at risks six through 10. The sixth risk in the OWASP top 10 is vulnerable and outdated components. A developer's job is not easy and it's become standard practice to reuse someone else's code if they've already figured out how to make an application do what you want yours to do. That code could be a language specific library. It could be an open source module. It could even be something as simple as a snippet of code that they found on Stack Exchange. If the code they decide to use has a security flaw in it, then your application will soon be vulnerable to attacks that exploit that same weakness. OWASP dependency check and dependency track projects are dedicated to identifying risks associated with components that your team didn't build themselves. The seventh risk of the OWASP top 10 is broken authentication. When an attacker exploits a flaw in…
Download courses and learn on the go
Watch courses on your mobile device without an internet connection. Download courses using your iOS or Android LinkedIn Learning app.
Contents
-
-
(Locked)
Secure architecture and design patterns3m 43s
-
(Locked)
Identifying and prioritizing controls6m 15s
-
(Locked)
Traditional application architectures7m 23s
-
(Locked)
Pervasive and ubiquitous computing6m 43s
-
(Locked)
Rich internet and mobile applications7m 9s
-
(Locked)
Cloud architectures7m 8s
-
(Locked)
Embedded system considerations8m 45s
-
(Locked)
Architectural risk assessments6m 59s
-
(Locked)
Component-based systems5m 2s
-
(Locked)
Security enhancing tools4m 8s
-
(Locked)
Cognitive computing4m 37s
-
(Locked)
Control systems8m 34s
-
(Locked)
-
-
(Locked)
Components of a secure environment8m 25s
-
(Locked)
Designing network and server controls4m 22s
-
(Locked)
Designing data controls6m 25s
-
(Locked)
Secure design principles and patterns5m 6s
-
(Locked)
Secure interface design6m 49s
-
(Locked)
Security architecture and design review3m 6s
-
(Locked)
Secure operational architecture3m 37s
-
(Locked)