Jack of Repudiation
An attacker can edit logs and there’s no way to tell (perhaps because there’s no heartbeat option for the logging system).
Threat |
|
You are not signing or adding a sequence number to log entries, so they can either be deleted or changed and you would never know. |
|
CAPEC |
CAPEC-81 - Web Server Logs Tampering CAPEC-268 - Audit Log Manipulation |
ASVS |
N/A |
CWE |
CWE-353 - Missing Support for Integrity Check |
Mitigations |
|
|