Home > Ask the Software Quality Experts > Web and Enterprise Application Security Testing Questions & Answers > Affordable automated testing tools for securing websites
Ask The Software Quality Expert: Questions & Answers
EMAIL THIS

Affordable automated testing tools for securing websites

>
QUESTION:
Which automated tool can be used for securing a website from hacking inexpensively and easily? Are there any free tools, or hints you could offer?


RELATED CONTENT
Web and Enterprise Application Security Testing
Old problems persist in Web 2.0 security practices
How to get development, QA and security compliance teams to play nice
Beating software's cross-site scripting, authentication problems
Put a stop to software espionage by watermarking source code
How can I tell if my software security has been breached?
Is online application testing for smartphones different from other software testing?
Is manually testing a software project for flaws too risky?
Identifying whether or not your site or software has been hacked
How do I set up a secure login page using membership in ASP.NET?
Are there application security certification standards?

Software security testing and techniques
Why use POST vs. GET to keep applications secure
Old problems persist in Web 2.0 security practices
Application security checklist: Ways to beat cross-site request forgery
Are SQL injection attacks really a big software security risk?
Managing software testing: Five focus-improvement tips
Web server weaknesses you don't want to overlook
Using firewalls for software testing: Pros and cons
Beating software's cross-site scripting, authentication problems
Application security checklist: Finding, eliminating SQL injection flaws
Free Web proxy security tools software testers should get to know

Automated software testing
Just-enough application lifecycle management (ALM)
Choosing automated software testing tools: Open source vs. proprietary
Nine ways to evaluate automated software testing tools
Using soapUI to mock Web services can offer insight on user acceptance
Sauce Labs adds business value to Selenium testing with IDE
Strategies for software configuration testing
Why you don't need to buy a testing tool, except when you do
Automation Anywhere tackles automated testing
Agility and automation mark new application development and QA tools
Recording and running software load tests with JMeter

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
automated test equipment  (SearchSoftwareQuality.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


Kevin Beaver EXPERT RESPONSE FROM: Kevin Beaver

Pose a Question
Other Software Quality Categories
Meet all Software Quality Experts
Become an Expert for this site
ANSWERED October 2009:

There are plenty of "free" Web vulnerability scanners including Wikto and Paros. Even the commercial vendors Acunetix and N-Stalker have free versions of their scanner tools. I have found that you definitely get what you pay for but these free tools can get you started down the right path. Just don't overestimate the value of scanners and underestimate the value of manual testing. The latter will uncover the *other* 40-50% of Web security flaws that the scanners can't find.

I would also like to make mention of the Web 2.0 security testing tutorial available on this site.

Here is a link: Web 2.0 application security troubleshooting, testing tutorial included in this tutorial are links to several free tools, explanations on how to use them as well as troubleshooting advice and videos.




Search and Browse the Expert Answer Center
Search and browse more than 25,000 question and answer pairs from more than 250 TechTarget industry experts.
Browse our Expert Advice



Software Quality - Software Maintenance, Software Requirements, Software Standards
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2006 - 2010, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts