how we conduct security testing in realtime,for every
project we conduct security testig or not
Answer Posted / js_sabharwal
No, we dont conduct security testing for every project. For
example , I am developing Software for Primary Rimes or
Small Game.. I dont need to perform security testing.
Security Testing depends on the Risk of you project.
For example, Airplane Software, Health Care Softwares,
Banking Domains ..etc
How do we conduct ?
There are several ways to perform it again entirely depends
on your project/product, methods for web security testing
can be :
- Check for session hijacking.
- Check for session time out.
- Check for cross site scripting
- SQL Injection
- Http/Https
- Attempt of breach should log in 'Server Logs'
- Cookies Testing - Accepting/rejecting, invalid, decrypting
- Unauthorized access
- Multiple user login at same time
..etc
| Is This Answer Correct ? | 15 Yes | 1 No |
Post New Answer View All Answers
In a systen design to work out the tax to be paid: An employee has Rs 4000 of salary tax free. the next Rs 1500 is taxed at 10% , the next Rs 28000 is taxed at 22% , any further amount is taxed at 40% , the nearest whole Rs, which of these is a valid boundary value analysis test case ???? a)Rs 1500 b)Rs 32001 c)Rs 33501 d) Rs 28000.
hai friends can u expalin about real time process of testing at the company, like flow diagram
What is Independant Testing? When and where this type of testing will be performed?
define Testing of Procedure, Triggers and Functions in data base testing ?
What is Batch testing? Facets Benefit Configuration
Sentence "Working from onsite is effective" is growing in IT field. How do we bring that knowledge to offshore and do an effective job in Offshore?
what are the Cs in testing
Could some one tell me test cases for multi line text boxes like Notes field?
What is an error?
What is difference between Bug resolution meeting & Bug Review Committee? Who are participants?
How soon the bug should get fixed?
If you are handling a product testing and if there are around 100 test cases and in them few test cases are failed then at the end of the day how will you treat whether the product is pass/fail.? consider the failed test cases are in functional requirements.
How to do Pixel Size testing in a PDF document. Is there any Open tool that will be avaiable?
How much the bug is affecting the functionality of the application?
How do test documents in a project span across the software development lifecycle?