Identifying and Remediating CWE-312 Cleartext Storage of Sensitive Information in Laravel Applications
ID: 22acf3e4-c284-5d01-903e-faf911f951b5
STIX ID: report--22acf3e4-c284-5d01-903e-faf911f951b5
Feed Name: HackerOne Blog
## Executive Summary This article describes the risks and remediation steps for CWE-312 (cleartext storage of sensitive information) in Laravel applications, covering code-review checkpoints (environment files, migrations, logging), debugging advice (disable APP_DEBUG in production), encryption options (Crypt facade and Eloquent encrypted casting), secure database and logging practices, and recommended preventive measures such as automated scans and developer education.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
