Home > Software Quality Featured Topic
EMAIL THIS
 Featured Topic:  Web application testing
Search our content and thousands of pre-screened sites.
Advanced Search  
Last Updated: Jul 19, 2007 
Web applications have their own quality and security issues that software developers and testers need to be aware of. These techniques and tools can help you find flaws and vulnerabilities before the bad guys do.
>> Podcast: How source code analysis improves application security
Web application testing: The difference between black, gray and white box testing

(04 Apr 2007)

Security is critical when operating a Web application. Black, gray and white box tests are three tests you can conduct to ensure an attacker can't get to your application. Learn what the differences are in this tip from Denim Group's Dan Cornell.

Read Full Story
NEWS:
>> Find software bugs, defects using code coverage (SearchSoftwareQuality.com) 19 Feb 2007
ADVICE:
>> Web application vulnerabilities you don't want to overlook
TIP :When testing Web applications, chances are you will miss some weaknesses. Here's a look at 10 commonly overlooked Web ...
>> Web application security testing checklist
TIP :Testing your Web application security is something that needs be taken seriously. The best way to be successful is to prepare ...
>> Ways to automate SQL injection testing
TIP :Manual testing for SQL injection requires much effort with little guarantee that you'll find every vulnerability. Run ...
>> Testing for security in the age of Ajax programming
TIP :Ajax applications require an innovative approach to security testing. Bryan Sullivan offers programmers and QA testers tips ...
>> Find Ajax security flaws using tests
TIP :Ajax, JavaScript, RSS technology and Active X are all client-side active content that needs to be manually tested. Andres ...
>> Application security increased by static and dynamic code analysis
TIP :Integrating security measures into the software development life cycle (SDLC) is crucial Web application security. One of ...
>> The importance of input validation
TIP :Web applications are vulnerable if you don't practice input validation. Learn how to prevent application attacks such as ...
>> How to test Web site login security
TIP :Input validation is critical for the security of Web sites. Here's a techniques you can use to make sure your site isn't ...
>> Buffer overflow tools facilitate application testing
TIP :Web applications are the conduit for buffer overflow attacks on the Web server. As such, it's imperative to make sure your ...
>> Model-based testing for Java and Web-based GUI applications
TIP :By simulating users' interaction with an application, model-based testing can catch flaws that standard software tests might ...
>> Hacking for Dummies -- Chapter 16, Web applications
TIP :Web application security is the subject of this free book excerpt. Kevin Beaver reviews application vulnerabilities, ...
>> Free Web application security testing tools you need to get to know
TIP :Commercial application security testing tools tend to give better results than freeware and open source tools. But when cost ...
>> ASP.NET security tools and techniques
ASK THE EXPERTS :I work at a state university with small IT budgets. We need to find the best tools to scan for Web vulnerabilities and also ...
>> Code analysis: Which tool is right for you?
ASK THE EXPERTS :We're in the market for a code scanner or some sort of code analysis tool. What kinds of features should we look for?
>> Using fuzzer tools to find vulnerabilities
ASK THE EXPERTS :What are "fuzzing" tools and what do they do? If hackers are using them, can they be used for security?
>> Manual vs. automated penetration testing
ASK THE EXPERTS :I have a vague understanding of the differences between manual and automated penetration testing, but I don't know which ...
LEARNING TOOLS:
>> Learning Guide: Application security testing techniques

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Software security testing and techniques
Web application security testing basics
Getting started with Web application misuse cases
OWASP kicks off Summer of Code 2008
Video: Classification, detection of application backdoor attacks
Testing custom applications in a manufacturing context
Ajax security concerns you need to be aware of
Web application hacking: Inside the mind of an attacker
InfoSecurity 2008 Threat Analysis, Chapter 4: XSS Theory
How to define the scope of functional security testing
Cracking passwords the Web application way

Software testing and quality assurance (QA) fundamentals
Testing software in the dark is problematic
Software testers: Identity crisis or delusions of grandeur?
Determining the testing organization's place within a company
How to test a data warehouse
Software testing fundamentals: Testing basics
Software testing fundamentals: Other useful resources
Software requirements sign-off essential for solid QA
How to specialize in performance testing
The effectiveness of code coverage tools in software testing
How to thoroughly test a website without automated tools

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
build  (SearchSoftwareQuality.com)
code review  (SearchSoftwareQuality.com)
conformance testing  (SearchSoftwareQuality.com)
error handling  (SearchSoftwareQuality.com)
garbage in, garbage out  (SearchSoftwareQuality.com)
load testing  (SearchSoftwareQuality.com)
NUnit  (SearchSoftwareQuality.com)
quality assurance  (SearchSoftwareQuality.com)
stress testing  (SearchSoftwareQuality.com)
white box  (SearchSoftwareQuality.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary

> Automated software testing pros and cons
> The importance of integrating security into the SDLC
> Stop SQL injection attacks on applications
> How to counter XSS attacks
> Uncover application security flaws using tools
View full list of Featured Topics

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2006 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts