Test Ability to Forge Requests
OWASP Web Security Testing Guide 4.2 > 10. Business logic Testing > 10.2. Test Ability to Forge Requests
ID | Link to Hackinglife | Link to OWASP | Description |
---|---|---|---|
10.2 | WSTG-BUSL-02 | Test Ability to Forge Requests | - Review the project documentation looking for guessable, predictable, or hidden functionality of fields. - Insert logically valid data in order to bypass normal business logic workflow. |