What is 业务逻辑滥用?
In this glossary, 业务逻辑滥用 refers to: The exploitation of legitimate business logic in applications to gain unauthorized advantages, often bypassing technical controls without exploiting traditional vulnerabilities.
How is 业务逻辑滥用 used in cybersecurity?
In cybersecurity communication, this term appears in contexts such as: "通过审计工作流中的异常模式监控业务逻辑滥用,这些模式可能表明对预期控制的操纵或绕过。"
Why does 业务逻辑滥用 matter in cybersecurity?
业务逻辑滥用 matters because it supports clear communication in Application Security contexts for SOC Analysts, Security Engineers, and Incident Responders. It also connects to aviation training and exam language such as CISSP, CompTIA Security+, and CEH.
Who uses 业务逻辑滥用?
业务逻辑滥用 is mainly used by SOC Analysts, Security Engineers, and Incident Responders.
What category does 业务逻辑滥用 belong to?
In this glossary, 业务逻辑滥用 is grouped under Application Security. Related pages in this category explain adjacent procedures, commands and operational concepts.
Where does this definition come from?
This definition is sourced from ISO 27001, NIST Cybersecurity Framework, MITRE ATT&CK and published by Protermify Cybersecurity as a static cybersecurity reference page.