/securityProject-m1

GNU General Public License v3.0GPL-3.0

m1

About server-client side validation vectors

Attacker can hack/compromise users data using unsecure backend and frontend combination.

Backend

  1. sm1 (price tempering)

sm2 and sm3 related to response manipulation

  1. sm2 (otp validation)

  2. sm3 (secure fetching ->this may consider as secure data exchange)

Frontend

  1. sm1 (price tempering)

  2. sm2 (otp validation)

  3. sm3 (secure fetching)