Attacks on applications and data
SQL injection, cross-site scripting (XSS), buffer overflow, and directory traversal all exploit applications that fail to validate or sanitize user input. Unencrypted files and weak access control settings give adversaries easy access to sensitive data without needing a sophisticated exploit.
