We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent d28e433 commit 0de89c7Copy full SHA for 0de89c7
2019/en/0xa2-broken-authentitcation.md
@@ -16,7 +16,7 @@ A2:2019 Broken Authentication
16
17
An attacker with access to a cloud-based team collaboration tool creates a
18
private channel with himself in it. Then he starts a call, sharing it in the
19
-private channel: the HTTP request is recorded of later use. Two different users
+private channel: the HTTP request is recorded for later use. Two different users
20
start a call on a different channel. The attacker grabs the channel id,
21
replacing it in the previously captured HTTP request. Resending the request
22
enables attacker to eavesdrop the private call.
0 commit comments