Platform & Code (PC7)
Platform & Code
7
Colin can expose or modify sensitive data through the app's interprocess communication because of misconfiguration or because the content provider's query methods are not properly parameterized and arguments sanitized
Scenario: Colin can expose or modify sensitive data through the app's interprocess communication because of misconfiguration or because the content provider's query methods are not properly parameterized and arguments sanitized
Example
Threat Modeling
STRIDE
What can go wrong?
What are we going to do about it?
Mappings
STRIDE: -
SAFECode™: -
MASVS: MASVS-CODE-4,MASVS-AUTH-1,MASVS-PLATFORM-1,MASVS-STORAGE-2
No attacks registered!