1. What is Security Testing ?
Security Testing is a type of Software Testing that uncovers vulnerabilities, threats, risks in a software application and prevents malicious attacks from intruders.
data:image/s3,"s3://crabby-images/fb8cd/fb8cd11892931d683a9afb1f54268765f0206998" alt=""
2. Why do Security Testing ?
The purpose of Security Tests is to identify all possible loopholes and weaknesses of the software system which might result in a loss of information, revenue, repute at the hands of the employees or outsiders of the Organization.
3. Types of Security Testing
data:image/s3,"s3://crabby-images/de41e/de41e661c6d6f182725322d5000822bcc0c35a8f" alt=""
4. How to do Security Testing ?
data:image/s3,"s3://crabby-images/ac88d/ac88d719a8d691846a4f1059375486edc6241b5e" alt=""
data:image/s3,"s3://crabby-images/9b268/9b268556b564031ed55bb0bf7397a68b5a273f02" alt=""
5. Example Test Scenarios for Security Testing
- A password should be in encrypted format
- Application or System should not allow invalid users
- Check cookies and session time for application
- For financial sites, the Browser back button should not work.
Reference:
- https://www.hackerone.com/knowledge-center/what-security-testing#:~:text=Security%20testing%20involves%20verifying%20the,be%20exploited%20by%20malicious%20actors.
- https://viblo.asia/p/tim-hieu-co-ban-ve-security-test-3P0lPYmn5ox
- https://www.geeksforgeeks.org/security-testing/
- https://www.softwaretestinghelp.com/security-testing-of-web-applications/