The Hidden Threat of Business Logic Attacks

wiredmikey (1824622) writes | more than 2 years ago

Crime 0

wiredmikey (1824622) writes "We've been bombarded with headlines of cyber attacks, breaches and hacks all year. One type of attack that often flies under the radar are business logic attacks, sometimes called logic abuse attacks.

Business logic attacks abuse the functionality of a program—as opposed to an application vulnerability. They’re stealthy because they don’t come as malformed requests and they contain legitimate values. Often, we cannot even call them illegal. Mainly performed by business logic bots (BLBs), these types of attacks can perform a variety of attacks including Queue Jumping, Auction Sniping, Poll Skewing, Click Fraud, Poker Bots, and more.

An interesting column highlighting some of the attacks that often go unnoticed and escape the headlines, but are happening every day..."

