Skip to content

Commit

Permalink
🤖 fmt
Browse files Browse the repository at this point in the history
  • Loading branch information
wurstbrot authored Nov 15, 2023
1 parent cbd3326 commit c299830
Show file tree
Hide file tree
Showing 2 changed files with 7 additions and 43 deletions.
7 changes: 7 additions & 0 deletions CHANGELOG.md
Original file line number Diff line number Diff line change
@@ -1,3 +1,10 @@
# [1.9.0](https://github.com/devsecopsmaturitymodel/DevSecOps-MaturityModel-data/compare/v1.8.2...v1.9.0) (2023-11-15)


### Features

* Remove WAF ([cbd3326](https://github.com/devsecopsmaturitymodel/DevSecOps-MaturityModel-data/commit/cbd3326fa4d1c783e953669f5ddcdfead618f38f))

## [1.8.2](https://github.com/devsecopsmaturitymodel/DevSecOps-MaturityModel-data/compare/v1.8.1...v1.8.2) (2023-11-11)


Expand Down
43 changes: 0 additions & 43 deletions src/assets/YAML/generated/generated.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3637,49 +3637,6 @@ Implementation:
Default: false
B: false
C: false
Usage of a Web Application Firewall:
uuid: 3e6253ab-89e5-4dea-aca0-3e770b78d39e
risk: Using an insecure application might lead to a compromised application.
This might lead to total data theft or data modification.
measure: |
The usage of an API Gateway / Web Application Firewall might mitigate it. There are debates on how useful a WAF is for APIs.
difficultyOfImplementation:
knowledge: 4
time: 4
resources: 4
usefulness: 2
level: 5
implementation:
- uuid: 6150533e-58ca-4b52-a9b2-6226545d9ea0
name: Top 5 API Security Myths That Are Crushing Your Business
tags:
- documentation
- waf
url: https://thehackernews.com/2022/11/top-5-api-security-myths-that-are.html
description: |
There are several myths and misconceptions about API security. These myths about securing APIs are crushing your business
references:
samm2:
- D-SR-3-A
iso27001-2017:
- Hardening is not explicitly covered by ISO 27001 - too specific
- 13.1.3
iso27001-2022:
- Hardening is not explicitly covered by ISO 27001 - too specific
- 8.22
openCRE:
- https://www.opencre.org/rest/v1/standard/DevSecOps+Maturity+Model+(DSOMM)/Application
Hardening/3e6253ab-89e5-4dea-aca0-3e770b78d39e
isImplemented: false
comments: ""
dependsOn:
- App. Hardening Level 2
tags:
- none
teamsImplemented:
Default: false
B: false
C: false
Development and Source Control:
.gitignore:
uuid: 363a3eea-baf9-4010-88ca-bb8186a2989d
Expand Down

0 comments on commit c299830

Please sign in to comment.