Platform & Code (PC9)
Platform & Code
9
Max can modify or expose sensitive data because input validation and sanitization are not properly applied to interprocess communication or because extensions are not properly restricted
Scenario: Max can modify or expose sensitive data because input validation and sanitation are not properly applied to interprocess communication or because extensions are not properly restricted
Example
Threat Modeling
STRIDE
What can go wrong?
What are we going to do about it?
Mappings
STRIDE: -
MASTG Best: 0039,0064,0068,0069
MASTG Know: 0021,0117,0075,0082,0141
SAFECode™: -
MASVS: MASVS-CODE-4,MASVS-STORAGE-1,MASVS-STORAGE-2,MASVS-CRYPTO-2,MASVS-PLATFORM-1
No attacks registered!