13.2 Broken Authentication

Select Reports > Portal > Repository > Standard Content > OWASP > A 2 - Broken Authentication.

Some enterprises mis-configure or fail to enable the authentication and session management functions of applications and web sites. When this occurs, a malicious user could compromise passwords, keys, and session tokens.

Broken Authentication and Session Management

Reports the top 20 hosts with the most reports of broken authentication and system management. The table lists the IP address, host name, ID of the device event class, and the number of reported events.

This report also is available in the Account Hijacking category of the Cloud reports.