how we conduct security testing in realtime,for every
project we conduct security testig or not
Answer Posted / js_sabharwal
No, we dont conduct security testing for every project. For
example , I am developing Software for Primary Rimes or
Small Game.. I dont need to perform security testing.
Security Testing depends on the Risk of you project.
For example, Airplane Software, Health Care Softwares,
Banking Domains ..etc
How do we conduct ?
There are several ways to perform it again entirely depends
on your project/product, methods for web security testing
can be :
- Check for session hijacking.
- Check for session time out.
- Check for cross site scripting
- SQL Injection
- Http/Https
- Attempt of breach should log in 'Server Logs'
- Cookies Testing - Accepting/rejecting, invalid, decrypting
- Unauthorized access
- Multiple user login at same time
..etc
| Is This Answer Correct ? | 15 Yes | 1 No |
Post New Answer View All Answers
whar are the contents in db testing test case template
Diffrence b/w functional testing,functionality testing,system testing?
how to generate id in testdirector? a) Td id 1 b) td id 2 c) td id 3 d) td id 4 which is correct answer please any one of the tell me and mail me
I studied MBA, I want learn any softwarecourse, which course is better hadoop or testing tools(manual+selenium?)
What are all the scenario for 1.google analytics 2.api 3.paypal
Unix question: 1)command to print a list of files containing a particular word. 2) what does a .profile mean. 3) what is a file server? 4) Command to move towards left in vi editor explain grep and find commands using example.
How to do security implementation for any URL??
Explain compatibility testing with an example.
What is fuzz testing?
When we use integration testing for any new system so why we required system testing.
Usually customers won’t give all the requirements. How will you manage & collect all the necessary information?
Differentiate test bed and test environment?
How did you do unit testing in your project?
Can you explain exploratory testing?
what is the difference between Test-bed and test topology?