how we conduct security testing in realtime,for every
project we conduct security testig or not
Answer Posted / js_sabharwal
No, we dont conduct security testing for every project. For
example , I am developing Software for Primary Rimes or
Small Game.. I dont need to perform security testing.
Security Testing depends on the Risk of you project.
For example, Airplane Software, Health Care Softwares,
Banking Domains ..etc
How do we conduct ?
There are several ways to perform it again entirely depends
on your project/product, methods for web security testing
can be :
- Check for session hijacking.
- Check for session time out.
- Check for cross site scripting
- SQL Injection
- Http/Https
- Attempt of breach should log in 'Server Logs'
- Cookies Testing - Accepting/rejecting, invalid, decrypting
- Unauthorized access
- Multiple user login at same time
..etc
| Is This Answer Correct ? | 15 Yes | 1 No |
Post New Answer View All Answers
write the test senario on opening door in the flow diagram format
hi, this is geetha, i have one doubt regarding the vulnerability testing. For sql injection testing is there any need for the tools to be installed. If it is what is tool and what is the method to test in sql injection testing. Plz Guide me
can anyone tell me the questions that can be posed in an interview for a 5 year experienced person in manual testing
Pls u can u r mail id to my personal mail id also if they dont want to give u r mail id n comman place
Which is the best testing model?
How does quality control differ from quality assurance?
What is the different between SIT and UIT?
What is the difference between Sleep and wait in winrunner what is integration testing and types of testing present what is system testing what is data driven testing what is functionality testing if requirements are given to you then how do you write the test cases for it Account number = Ok cancel For above given form the valid account number starts from 1 to 1000 so is it necessary to input the 1,2,3 ….998,999,1000 test cases to check the conditions of valid account numbers I,e is it compulsory to write 1000 test cases for the above form
Hi,all i have a desktop App. which have a feature, It's a demo version if u want full version then u have to perches it. Pls give me some idea ASAP how can i break the App.
Discuss what test metrics you feel are important to publish an organization?
hi every one can you send me ISTQB Course material on my Email id deeptimundra997@gmail.com
1.What is bidirectional traceability ??? and how it is implemented? 2.What is Automation Test frame work ? 3. Define the components present in test strategy? 4. Define the components present in test plan? 5. Have u written Test plan ?…. thank u!plz reply........
Can u give me explanation about section 508 testcase and Testcase for this section. It need a details checklist for the same Manimozhi
what is the critical defect in telecom domain?help me out from this prob its very urgent
what is system testing? as test eng, what do u do in sys testing? who invoves in sys testing?