The OWASP Top 10 for 2021 has been released, and Broken Access Control has risen to the top of the list.
The all-new OWASP Top 10 2021 includes three new categories and position adjustments, according to OWASP. For every web application, the OWASP Top 10 is a minimum or basic security testing requirement. The OWASP Top 10 was initially published in 2003, and it has undergone numerous updates since then. The draught report for 2021 is now available. "The OWASP Top 10 2021 is a good start as a baseline for checklists and so on," OWASP noted, "but it's not sufficient in and of itself." OWASP Top 10 2021 A01:2021 – Broken Access Control It is also known as an authorization, and it specifies how a web application allows access to material and capabilities to some users but not others. It rose to the top from fifth place in 2017. A02:2021 – Cryptographic Failures Shifted from third to the second position, previously it was called as Sensitive Data Exposure. The lack of encryption often leads to sensitive data exposure or system compromise. A03:2021-Inje...