Business Logic Abuse - Response

Response

The response to business logic abuse can be quite challenging for two reasons. First, detecting business logic abuse is difficult. The perpetrators using the same functionality used by legitimate users and therefore, their traffic is likely intermingled with real traffic. This can make the identification of these types of exploits problematic.

Second, since the criminal is using a legitimate flow on a website or other application, disabling that flow would result in a very poor experience for the website’s users. Finding an approach where legitimate users can access the business flow while limiting access to the bad actor is an especially tricky endeavor.

Read more about this topic:  Business Logic Abuse

Famous quotes containing the word response:

    Eyes seeking the response of eyes
    Bring out the stars, bring out the flowers,
    Thus concentrating earth and skies
    So none need be afraid of size.
    All revelation has been ours.
    Robert Frost (1874–1963)

    Tears are sometimes an inappropriate response to death. When a life has been lived completely honestly, completely successfully, or just completely, the correct response to death’s perfect punctuation mark is a smile.
    Julie Burchill (b. 1960)

    Play for young children is not recreation activity,... It is not leisure-time activity nor escape activity.... Play is thinking time for young children. It is language time. Problem-solving time. It is memory time, planning time, investigating time. It is organization-of-ideas time, when the young child uses his mind and body and his social skills and all his powers in response to the stimuli he has met.
    James L. Hymes, Jr. (20th century)