Platform & Code (PC6)
Platform & Code
6
Dawn can expose and intercept sensitive functionality through interprocess communication because permissions for broadcast and sharing are not set, not narrow enough or because sensitive functionality isn't appropriately excluded when sharing
Scenario: Dawn can expose and intercept sensitive functionality through interprocess communication because permissions for broadcast and sharing are not set, not narrow enough or because sensitive functionality isn't appropriately excluded when sharing
Example
Threat Modeling
STRIDE
What can go wrong?
What are we going to do about it?
Mappings
STRIDE: -
MASTG Know: 0081,0132,0017,0020,0133,0134
MASVS: MASVS-AUTH-1,MASVS-PLATFORM-1,MASVS-STORAGE-2
No attacks registered!