Skip to content

Conversation

@sydseter
Copy link
Collaborator

@sydseter sydseter commented Jul 15, 2025

This PR closes #2574

Description

See issue for details.


[x] I have read the contributing guidelines.

Guidelines for Pull Requests (you can delete this section after reading):

  • Please ensure that your content follows the style guide.
  • If you are working on Porting MASTG v1 Tests to v2, refer to this document.
  • If you are working on new MASWE, tests, or demos, refer to this document.

@sydseter sydseter changed the title Fixes #2574 Fixes OWASP/mastg#2574 [MASWE-0010] Weak Cryptographic Key Derivation Jul 15, 2025
@sydseter
Copy link
Collaborator Author

sydseter commented Jul 16, 2025

Regarding :

  • lack of salt encryption when doing PBKDF2
    I believe this one belong to MASWE-0021.

@sydseter sydseter changed the title Fixes OWASP/mastg#2574 [MASWE-0010] Weak Cryptographic Key Derivation OWASP/mastg#2574 [MASWE-0010] Weak Cryptographic Key Derivation Jul 16, 2025
@sydseter sydseter changed the title OWASP/mastg#2574 [MASWE-0010] Weak Cryptographic Key Derivation Fixes #2574 OWASP/mastg#2574 [MASWE-0010] Weak Cryptographic Key Derivation Jul 16, 2025
@cpholguera cpholguera requested a review from Diolor October 29, 2025 09:27
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

[MASWE-0010] Weak Cryptographic Key Derivation

1 participant