Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[MASWE-0006] Add Sensitive Data Stored Unencrypted in Private Storage Locations #2566

Merged
merged 56 commits into from
Jul 10, 2024
Merged
Changes from 1 commit
Commits
Show all changes
56 commits
Select commit Hold shift + click to select a range
06a2a0e
Add Risk and Test for: Data Unencrypted Internal
thomascannon Feb 21, 2024
acdce08
Update to clarify 'not storing data' as a mitigation
thomascannon Feb 27, 2024
c469c44
Merge branch 'OWASP:master' into thomascannon/issue2544
thomascannon Mar 5, 2024
21df242
Update risk.md to make mitigation generic
thomascannon Mar 5, 2024
a29fb63
Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unenc…
thomascannon Apr 2, 2024
c4ebaf2
Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unenc…
thomascannon Apr 2, 2024
ed8f910
Fix typo in title
thomascannon Apr 2, 2024
df64230
Adding link to a technique from test.md
thomascannon Apr 2, 2024
c398e90
Update observation and evaluation in test.md
thomascannon Apr 2, 2024
bb794de
Update risk.md to remove "further documentation" as they are now in t…
thomascannon Apr 2, 2024
ea50af4
Updating test.md with Carlos' suggestions
thomascannon May 7, 2024
8585fc9
Update Internal -> Private Storage
thomascannon May 7, 2024
9782a76
Update Internal -> Private Storage
thomascannon May 7, 2024
cb57040
Update with new term Private Storage
thomascannon May 7, 2024
0a76eb1
Update to relative directory path
thomascannon May 7, 2024
f1a713c
Update test.md Overview with Carlos' suggestion
thomascannon May 7, 2024
22d79f5
Update test.md links with relative paths and add a test step to take …
thomascannon May 7, 2024
1aef397
Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unenc…
thomascannon May 7, 2024
f1f9c27
Correct numbering in test.md
thomascannon May 7, 2024
09f2530
Merge branch 'OWASP:master' into thomascannon/issue2544
thomascannon May 7, 2024
b698abe
Add Risk and Test for: Data Unencrypted Internal
thomascannon Feb 21, 2024
a171a70
Update to clarify 'not storing data' as a mitigation
thomascannon Feb 27, 2024
f487f60
Update risk.md to make mitigation generic
thomascannon Mar 5, 2024
837cddc
Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unenc…
thomascannon Apr 2, 2024
6f429f7
Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unenc…
thomascannon Apr 2, 2024
a591166
Fix typo in title
thomascannon Apr 2, 2024
e138fec
Adding link to a technique from test.md
thomascannon Apr 2, 2024
96330fb
Update observation and evaluation in test.md
thomascannon Apr 2, 2024
3269afb
Update risk.md to remove "further documentation" as they are now in t…
thomascannon Apr 2, 2024
3024aff
Updating test.md with Carlos' suggestions
thomascannon May 7, 2024
63be19e
Update Internal -> Private Storage
thomascannon May 7, 2024
c471734
Update Internal -> Private Storage
thomascannon May 7, 2024
274e5cc
Update with new term Private Storage
thomascannon May 7, 2024
254ba56
Update to relative directory path
thomascannon May 7, 2024
115ae2f
Update test.md Overview with Carlos' suggestion
thomascannon May 7, 2024
5b1bb49
Update test.md links with relative paths and add a test step to take …
thomascannon May 7, 2024
b5d288e
Update risks/MASVS-STORAGE/1-store-sensitive-data-securely/data-unenc…
thomascannon May 7, 2024
212bcff
Correct numbering in test.md
thomascannon May 7, 2024
d65c873
Merge branch 'thomascannon/issue2544' of github.com:thomascannon/owas…
thomascannon Jul 9, 2024
ef9cd34
[MASWE-0006] Sensitive Data Stored Unencrypted in Private Storage Loc…
thomascannon Jul 9, 2024
1a6ec8f
Move to new MASWE structure
thomascannon Jul 9, 2024
000aadb
Renamed to private-storage
thomascannon Jul 9, 2024
4dccaae
Update test title
thomascannon Jul 9, 2024
1c4ecf2
Update refs
thomascannon Jul 9, 2024
265467e
Fix refs
thomascannon Jul 9, 2024
8aaf961
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
d8021ac
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
018cee3
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
701dd45
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
4914a0f
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
6e501fb
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
35fadaa
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
d639c54
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
thomascannon Jul 10, 2024
832b66c
Merge branch 'OWASP:master' into thomascannon/issue2544
thomascannon Jul 10, 2024
3fb0799
Rename files and move to new flat structure
thomascannon Jul 10, 2024
d179bde
Add references from demo to test and from test to weakness
cpholguera Jul 10, 2024
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
Prev Previous commit
Next Next commit
Update weaknesses/MASVS-STORAGE/1-secure-data-storage/data-unencrypte…
…d-private-storage/android-data-in-sandbox/demo-1/demo.md

Co-authored-by: Carlos Holguera <[email protected]>
thomascannon and cpholguera authored Jul 10, 2024
commit d639c5478bad64ec11086146e436d490c1e93697
thomascannon marked this conversation as resolved.
Show resolved Hide resolved
Original file line number Diff line number Diff line change
@@ -8,7 +8,7 @@ code: [kotlin]

### Sample

The snippet below shows sample code that creates a file on the internal storage using the `getFilesDir` method.
The snippet below shows sample code that creates a file on the **internal storage** using using the [`filesDir`](https://developer.android.com/reference/android/content/Context#getFilesDir()) property of the context object.

{{ MastgTest.kt }}