Home > Ask the Software Quality Experts > Web Services Security and Identity Management Questions & Answers > Affordable automated testing tools for securing websites
Ask The Software Quality Expert: Questions & Answers
EMAIL THIS

Affordable automated testing tools for securing websites

Kevin Beaver EXPERT RESPONSE FROM: Kevin Beaver

Pose a Question
Other Software Quality Categories
Meet all Software Quality Experts
Become an Expert for this site


Software quality news and advice
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google


>
QUESTION POSED ON: 05 October 2009
Which automated tool can be used for securing a website from hacking inexpensively and easily? Are there any free tools, or hints you could offer?


Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google



RELATED CONTENT
Web Services Security and Identity Management
Put a stop to software espionage by watermarking source code
How can I tell if my software security has been breached?
Is online application testing for smartphones different from other software testing?
Is manually testing a software project for flaws too risky?
Identifying whether or not your site or software has been hacked
Enabling HTTPS in J2EE Web components
Secure Web services in J2EE

Software security testing and techniques
Web server weaknesses you don't want to overlook
Using firewalls for software testing: Pros and cons
Beating software's cross-site scripting, authentication problems
Free Web proxy security tools software testers should get to know
How to get management on board with Web 2.0 security issues
Web application security best practices: Tips on implementation
Testing strategies for complex environments
How to make your software tamperproof
Ways to approach application performance testing on a tight budget
How can I tell if my software security has been breached?

Automated software testing
Agility and automation mark new application development and QA tools
Recording and running software load tests with JMeter
ThoughtWorks Studios' Mingle captures "murmurs" and "waves" around project
Accelerating Agile testing with computer assistance
Improving software testing productivity using record-playback
Using automation to speed up software testing in Agile
Software consortium seeks standard quality metrics
Software testers facing six big challenges today, StarWest keynoter says
Classic inspiration for modern software test problems in QA
Expert advises on implementation of Selenium IDE for effective software testing

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
automated test equipment  (SearchSoftwareQuality.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


There are plenty of "free" Web vulnerability scanners including Wikto and Paros. Even the commercial vendors Acunetix and N-Stalker have free versions of their scanner tools. I have found that you definitely get what you pay for but these free tools can get you started down the right path. Just don't overestimate the value of scanners and underestimate the value of manual testing. The latter will uncover the *other* 40-50% of Web security flaws that the scanners can't find.

I would also like to make mention of the Web 2.0 security testing tutorial available on this site.

Here is a link: Web 2.0 application security troubleshooting, testing tutorial included in this tutorial are links to several free tools, explanations on how to use them as well as troubleshooting advice and videos.




Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Software Quality - Software Maintenance, Software Requirements, Software Standards
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2006 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts