Adventures in .NET cover image

API Security Risks with OWASP - .NET 151

Adventures in .NET

00:00

Broken Object Property Level Authorization

I think the two, if I was a programmer thinking about this rule, I think that would be two places where I get it wrong. The second thing is breaking this mechanism by using seemingly secure things incorrectly. For instance, having a physical UB key to make the authentication work well with multi-factor but not using this hashing option of UB key. And because UB doesn't have the clock in it, then if I, you know, regenerate it accidentally, it stills it never expires. Which can also be considered a feature for some UW. It is a feature indeed. Let's pivot to number three, broken object property level authorization. That sounds a bit complicated and I

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app