Difference between revisions of "Projects/OWASP Mobile Security Project - Top Ten Mobile Risks"

From OWASP
Jump to: navigation, search
Line 5: Line 5:
  
  
== Top 10 Mobile Risks, Release Candidate 2014 v1.1 (To be updated 1/26/2014)==
+
== Top 10 Mobile Risks, Release Candidate 2014 v1.1 (To be updated 1/27/2014)==
[[File:Topten_2014.png|right|550px]]
+
[[File:MTopten_2014.png|right|550px]]
*[[Mobile_Top_10_2014-M1|M1: ]]  
+
*[[Mobile_Top_10_2014-M1|M1: Weak Server Side Controls ]]  
*[[Mobile_Top_10_2014-M2|M2: ]]
+
*[[Mobile_Top_10_2014-M2|M2: Insecure Data Storage ]]
*[[Mobile_Top_10_2014-M3|M3: ]]
+
*[[Mobile_Top_10_2014-M3|M3: Insufficient Transport Layer Protection ]]
*[[Mobile_Top_10_2014-M4|M4: ]]
+
*[[Mobile_Top_10_2014-M4|M4: Unintended Data Leakage ]]
*[[Mobile_Top_10_2014-M5|M5: ]]
+
*[[Mobile_Top_10_2014-M5|M5: Poor Authorization and Authentication ]]
*[[Mobile_Top_10_2014-M6|M6: ]]
+
*[[Mobile_Top_10_2014-M6|M6: Broken Cryptography ]]
*[[Mobile_Top_10_2014-M7|M7: ]]
+
*[[Mobile_Top_10_2014-M7|M7: Client Side Injection ]]
*[[Mobile_Top_10_2014-M8|M8: ]]
+
*[[Mobile_Top_10_2014-M8|M8: Security Decisions Via Untrusted Inputs ]]
*[[Mobile_Top_10_2014-M9|M9: ]]
+
*[[Mobile_Top_10_2014-M9|M9: Improper Session Handling ]]
*[[Mobile_Top_10_2014-M10|M10: ]]
+
*[[Mobile_Top_10_2014-M10|M10: Lack of Binary Protections ]]
  
  

Revision as of 23:23, 26 January 2014

About this list

An effort to refresh the Top 10 for 2014 is currently underway. Details can be found here: OWASP Mobile Top 10 Call For Data


Top 10 Mobile Risks, Release Candidate 2014 v1.1 (To be updated 1/27/2014)



Contributors


Archive

The list below is release candidate v1.0 of the OWASP Top 10 Mobile Risks.  This list was initially released on September 23, 2011 at Appsec USA.  

The original presentation can be found here: SLIDES
The corresponding video can be found here: VIDEO