Notes for the Anwendungssicherheit (app security) course at HdM Stuttgart
Felicitas Pojtinger
2022-02-01
Please check out Jakob’s notes for more detailed study materials!
These study materials are heavily based on professor Heuzeroth’s “Anwendungssicherheit” lecture at HdM Stuttgart.
Found an error or have a suggestion? Please open an issue on GitHub (github.com/pojntfx/uni-appsecurity-notes):
If you like the study materials, a GitHub star is always appreciated :)
Uni App Security Notes (c) 2022 Felicitas Pojtinger and contributors
SPDX-License-Identifier: AGPL-3.0
Primary purpose: Analysis of the data flow; data is both protected by the GDPR and represents value of the corportation
localhost
and
unprotected UNIX socket isn’t an issue, but forward it with
socat
and it becomes a massive security vulnerability!Results in a number which can be used to classify the vulnerability.
Space, Right Arrow or swipe left to move to next slide, click help below for more details