OWASP / owasp-mastg

The Mobile Application Security Testing Guide (MASTG) is a comprehensive manual for mobile app security testing and reverse engineering. It describes the technical processes for verifying the controls listed in the OWASP Mobile Application Security Verification Standard (MASVS).
https://mas.owasp.org/
Creative Commons Attribution Share Alike 4.0 International
11.6k stars 2.29k forks source link

MASVS 3.1: Test case for Key Management for iOS is missing #922

Closed sushi2k closed 5 years ago

sushi2k commented 6 years ago

See Android test case https://mobile-security.gitbook.io/mobile-security-testing-guide/android-testing-guide/0x05e-testing-cryptography#testing-key-management

commjoen commented 5 years ago

Note that the android part needs updating as well: testcases for insecure key management and generation should be added to the existing testcase..