Skip to content

Commit

Permalink
Update MASWE-0002.md (OWASP#3060)
Browse files Browse the repository at this point in the history
  • Loading branch information
cpholguera authored and serek8 committed Jan 2, 2025
1 parent 79d1079 commit fe05fd7
Showing 1 changed file with 1 addition and 1 deletion.
2 changes: 1 addition & 1 deletion weaknesses/MASVS-STORAGE/MASWE-0002.md
Original file line number Diff line number Diff line change
Expand Up @@ -20,7 +20,7 @@ draft:
topics:
- File permissions (Android)
- improperly configured FileProvider (Android)
- [Avoid the deprecated MODE_WORLD_WRITEABLE and MODE_WORLD_READABLE modes for IPC files](https://developer.android.com/privacy-and-security/security-tips#internal-storage). They don't provide the ability to limit data access to particular applications, and they don't provide any control of data format. If you want to share your data with other app processes, consider using a content provider instead, which offers read and write permissions to other apps and can make dynamic permission grants on a case-by-case basis.
- Avoid the deprecated MODE_WORLD_WRITEABLE and MODE_WORLD_READABLE modes for IPC files, see https://developer.android.com/privacy-and-security/security-tips#internal-storage. They don't provide the ability to limit data access to particular applications, and they don't provide any control of data format. If you want to share your data with other app processes, consider using a content provider instead, which offers read and write permissions to other apps and can make dynamic permission grants on a case-by-case basis.
status: draft

---
Expand Down

0 comments on commit fe05fd7

Please sign in to comment.