EasyAudit International EasyAudit International
Pages Menu
  • Agreements
  • Frequently Asked Questions
  • Blog

WASC TC v1.0 Classes List

Home » WASC TC v1.0 Classes List

EasyAudit WEB completely cover all the 26 WASC Threat Classification Version 1 Classes and EasyAudit NET have a good coverage of Web issues, even if it’s targeted to network security.

WASC TC v1.0 Classes List View

  1. Authentication
    1. Brute Force
    2. Insufficient Authentication
    3. Weak Password Recovery Validation
  2. Authorization
    1. Credential/Session Prediction
    2. Insufficient Authorization
    3. Insufficient Session Expiration
    4. Session Fixation
  3. Client-Side Attacks
    1. Content Spoofing
    2. Cross Site Scripting (also known as XSS)
    3. HTTP Response Splitting (contained in Appendix)
  4. Command Execution
    1. Buffer Overflow
    2. Format String Attack
    3. LDAP Injection
    4. OS Commanding
    5. SQL Injection
    6. SSI Injection
    7. XPath Injection
  5. Information Disclosure
    1. Directory Indexing
    2. Information Leakage
    3. Path Traversal
    4. Predictable Resource Location
    5. Application Fingerprinting (contained in Appendix)
  6. Logical Attacks
    1. Abuse of Functionality
    2. Denial of Service
    3. Insufficient Anti-Automation
    4. Insufficient Process Validation

Back to the Coverage Chart

Download the unmodified WASC TC v1.0 PDF

Technical Specifications

  • Technical specifications
  • WASC TC v2.0 Classes Coverage
  • WASC TC v1.0 Classes Coverage
  • OWASP Top Ten 2013 Coverage
  • OWASP Top Ten 2010 Coverage
  • OWASP Top Ten 2007 Coverage
  • OWASP Top Ten 2004 Coverage
  • 2011 CWE/SANS Top 25 Coverage
  • 2010 CWE/SANS Top 25 Coverage
  • 2009 CWE/SANS Top 25 Coverage
  • The Health Insurance Portability and Accountability Act (HIPAA)
  • Payment Card Industry Data Security Standard (PCI DSS)
  • NIST Special Publication 800-53
  • Sarbanes-Oxley Act (SOX)
  • DISA Security Technical Implementation Guide (STIG)
  • ISO/IEC 27001:2005 Coverage
  • ISO/IEC 27001:2013 Coverage

Products and Services

  • EasyAudit WEB
  • EasyAudit NET
  • EasyAudit AEO

Learn More

  • Blog
  • White Papers
  • Training
  • Newsletter
  • Technical specifications
  • Press Kit

Products

  • EasyAudit WEB
  • EasyAudit WEB Full-Time
  • EasyAudit NET
  • EasyAudit NET Full-Time
  • EasyAudit AEO
  • EasyAudit AEO Full-Time

ISGroup SRL

Tel (+39) 045 4853232
Mail [email protected]

Via San Giusto, 7
37121 Verona VR, ITALY
CF e P.IVA 04164220230
REA VR-397513

EasyAudit

  • EasyAudit International (English)
  • EasyAudit Italiano (Italian)
  • EasyAudit Español (Spanish)
  • EasyAudit Deutsch (German)
  • EasyAudit Français (French)
  • EasyAudit 中国的 (Chinese)

Enterprise Services

  • ISGroup International (English)
  • ISGroup Italiano (Italian)
  • ISGroup Deutsch (German)
  • ISGroup Français (French)
  • ISGroup русский (Russian)
  • ISGroup 中国的 (Chinese)

Social

Twitter Google Plus Facebook Linkedin Skype RSS

Do you like EasyAudit? Show your appreciation!
Follow @isgroupsrl Tweet

Copyright © 2026 ISGroup SRL - All rights reserved