[Owasp-appsensor-project] Change to STE3 or new Detection Point STE4?

John Melton jtmelton at gmail.com
Fri Jan 28 09:21:29 EST 2011


+1 to change it from me.

On Fri, Jan 28, 2011 at 7:50 AM, Colin Watson <colin.watson at owasp.org>wrote:

> Hello
>
> I was wondering if we might change:
>
>   STE3: High Number of Same Transaction Across The Site
>
> to
>
>   STE3: Significant Change in Usage of Same Transaction Across The Site
>
> to include reduced usage as well as greater usage?  And remove the
> word "number" so it might include frequency, and quantitative aspects
> like "amount" or "value".  Otherwise we could create STE4.
>
> An example I'm thinking of is, a website has been compromised so that
> part-way through a business process, users are being redirected to
> some other website to complete the transaction.  A sudden drop in
> number of users would be a good indicator of a problem.
>
> Colin
> _______________________________________________
> Owasp-appsensor-project mailing list
> Owasp-appsensor-project at lists.owasp.org
> https://lists.owasp.org/mailman/listinfo/owasp-appsensor-project
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: https://lists.owasp.org/pipermail/owasp-appsensor-project/attachments/20110128/b1410ecf/attachment.html 


More information about the Owasp-appsensor-project mailing list