Use of weak Encryption Algorithms

Overview

In Apex, developers can use the System.Crypto class to implement various encryption algorithm, however some algorithms such as SHA1, MD5 are no longer considered secure by today's standards.

Business Impact

Increased risk of data breaches, financial loss, and reputational harm. Eroding customer trust and confidence.

Resources

Rare

Incidence

How common is this issue?
2%1%
arrow down0%
lower

Exposure

How long do organizations remain exposed before fixing the problem?
2 years8 months
arrow down67%
shorter
BenchmarkWith Clayton

Frameworks

TrustediconSecureiconData SecurityiconUse of EncryptioniconA02:2021 – Cryptographic Failuresicon