Back to Browse

OWASP Top 10 - A7 Missing function-level access control

5.2K views
Jul 2, 2016
15:24

This video is about function-level access control which simply means checking inside every action on your application that the current user has permission to call that action. Just because you didn't offer somebody a button or menu item, doesn't mean they can't call the action on the server, which is why the check is important.

Download

1 formats

Video Formats

360pmp420.2 MB

Right-click 'Download' and select 'Save Link As' if the file opens in a new tab.

OWASP Top 10 - A7 Missing function-level access control | NatokHD