Randomly Generated IVs And Keys Should Be Used For Crypto Calls

< 1 min read

Impact Area

Security

Severity

High

Affected Element

Apex Class

Rule ID #

SF-0022

Impact #

Hard-wiring cryptographic key values greatly compromises the security of encrypted data.

Remediation #

Use random seeds for your cryptographic operations.

Time to fix #

120 min

References #

This rule is linked to Common Weakness Enumeration CWE-311 Missing Encryption of Sensitive Data.

Updated on March 21, 2025
Was it helpful ?