Golgappa.net | Golgappa.org | BagIndia.net | BodyIndia.Com | CabIndia.net | CarsBikes.net | CarsBikes.org | CashIndia.net | ConsumerIndia.net | CookingIndia.net | DataIndia.net | DealIndia.net | EmailIndia.net | FirstTablet.com | FirstTourist.com | ForsaleIndia.net | IndiaBody.Com | IndiaCab.net | IndiaCash.net | IndiaModel.net | KidForum.net | OfficeIndia.net | PaysIndia.com | RestaurantIndia.net | RestaurantsIndia.net | SaleForum.net | SellForum.net | SoldIndia.com | StarIndia.net | TomatoCab.com | TomatoCabs.com | TownIndia.com
Interested to Buy Any Domain ? << Click Here >> for more details...

Explain about Security Testing in webbased application?

Answer Posted / ramyab.mca@gmail.com

Hai...

Security Testing:

Following are some test cases for web security testing:

Test by pasting internal url directly into browser address
bar without login. Internal pages should not open.
If you are logged in using username and password and
browsing internal pages then try changing url options
directly. I.e. If you are checking some publisher site
statistics with publisher site ID= 123. Try directly
changing the url site ID parameter to different site ID
which is not related to logged in user. Access should
denied for this user to view others stats.
Try some invalid inputs in input fields like login
username, password, input text boxes. Check the system
reaction on all invalid inputs.
Web directories or files should not be accessible directly
unless given download option.
Test the CAPTCHA for automates scripts logins.
Test if SSL is used for security measures. If used proper
message should get displayed when user switch from non-
secure http:// pages to secure https:// pages and vice
versa.
All transactions, error messages, security breach attempts
should get logged in log files somewhere on web server.

K,Byeee...
Thanks & Regards
B.Ramyasri

Is This Answer Correct ?    8 Yes 2 No



Post New Answer       View All Answers


Please Help Members By Posting Answers For Below Questions

What is a ‘test plan’?

1191


IN SQL SERVER 2005, With out using Query, hw can u break down USER NAME & PASSWORD to enter the software.

2205


tell me 5 new requirements in ur project? plz urgent

2401


Can any one suggest how to write the bug reports effectively by optimizing what we want to describe?

1977


According to RBI rule how much money can be transferred through online banking at one time...?

2903


What is white box testing?

1190


List out test deliverables?

1135


What is bug priority?

1336


If there is non reproducible bug which developer is not ready to agree, how you will convince him.

9030


what kind of testing have u done?

1997


Artifacts in design phase of SDLC ?

3536


List the considerations in developing testing methodology

6704


Describe a past experience with implementing a test harness in the development of software.

3995


what r the 5 major defects that u found in ur shopping related project?

1869


Can you explain boundary value analysis?

1134