Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
[MASWE-0006] Add Sensitive Data Stored Unencrypted in Private Storage…
… Locations (#2566) * Add Risk and Test for: Data Unencrypted Internal * Update to clarify 'not storing data' as a mitigation * Update risk.md to make mitigation generic * Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unencrypted-internal/risk.md Co-authored-by: Carlos Holguera <[email protected]> * Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unencrypted-internal/risk.md Add refs Co-authored-by: Carlos Holguera <[email protected]> * Fix typo in title Co-authored-by: Carlos Holguera <[email protected]> * Adding link to a technique from test.md * Update observation and evaluation in test.md * Update risk.md to remove "further documentation" as they are now in the refs section * Updating test.md with Carlos' suggestions Co-authored-by: Carlos Holguera <[email protected]> * Update Internal -> Private Storage Co-authored-by: Carlos Holguera <[email protected]> * Update Internal -> Private Storage Co-authored-by: Carlos Holguera <[email protected]> * Update with new term Private Storage Co-authored-by: Carlos Holguera <[email protected]> * Update to relative directory path Co-authored-by: Carlos Holguera <[email protected]> * Update test.md Overview with Carlos' suggestion Co-authored-by: Carlos Holguera <[email protected]> * Update test.md links with relative paths and add a test step to take a before-snapshot Co-authored-by: Carlos Holguera <[email protected]> * Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unencrypted-internal/risk.md Co-authored-by: Carlos Holguera <[email protected]> * Correct numbering in test.md * Add Risk and Test for: Data Unencrypted Internal * Update to clarify 'not storing data' as a mitigation * Update risk.md to make mitigation generic * Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unencrypted-internal/risk.md Co-authored-by: Carlos Holguera <[email protected]> * Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unencrypted-internal/risk.md Add refs Co-authored-by: Carlos Holguera <[email protected]> * Fix typo in title Co-authored-by: Carlos Holguera <[email protected]> * Adding link to a technique from test.md * Update observation and evaluation in test.md * Update risk.md to remove "further documentation" as they are now in the refs section * Updating test.md with Carlos' suggestions Co-authored-by: Carlos Holguera <[email protected]> * Update Internal -> Private Storage Co-authored-by: Carlos Holguera <[email protected]> * Update Internal -> Private Storage Co-authored-by: Carlos Holguera <[email protected]> * Update with new term Private Storage Co-authored-by: Carlos Holguera <[email protected]> * Update to relative directory path Co-authored-by: Carlos Holguera <[email protected]> * Update test.md Overview with Carlos' suggestion Co-authored-by: Carlos Holguera <[email protected]> * Update test.md links with relative paths and add a test step to take a before-snapshot Co-authored-by: Carlos Holguera <[email protected]> * Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unencrypted-internal/risk.md Co-authored-by: Carlos Holguera <[email protected]> * Correct numbering in test.md * [MASWE-0006] Sensitive Data Stored Unencrypted in Private Storage Locations Fixes #2544 * Move to new MASWE structure * Renamed to private-storage * Update test title * Update refs * Fix refs * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/android-data-in-sandbox/test.md Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/android-data-in-sandbox/demo-1/demo.md Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/weakness.md Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/android-data-in-sandbox/demo-1/MastgTest.kt Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/weakness.md Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/android-data-in-sandbox/test.md Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/android-data-in-sandbox/demo-1/demo.md Co-authored-by: Carlos Holguera <[email protected]> * Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypted-private-storage/android-data-in-sandbox/demo-1/demo.md Co-authored-by: Carlos Holguera <[email protected]> * Rename files and move to new flat structure * Add references from demo to test and from test to weakness --------- Co-authored-by: Carlos Holguera <[email protected]>
- Loading branch information