CAPEC™ 639: Probe System Files
Description
An adversary obtains unauthorized information due to improperly protected files. If an application stores sensitive information in a file that is not protected by proper access control, then an adversary can access the file and search for sensitive information.
Source: CAPEC™ 639
Related ASVS Requirements
ASVS (5.0): 11.1.1, 11.1.2, 11.1.3, 11.1.4, 13.1.4, 13.3.1, 13.3.2, 13.3.3, 16.3.3