A Web Security Testing Method Based on Web Application Structure

Author(s):  
Xueyong Yu ◽  
Guohua Jiang
2014 ◽  
Vol 1049-1050 ◽  
pp. 1972-1976
Author(s):  
Cheng He ◽  
Yan Fei Liu

Compared with traditional web sites, there are some new features on modern web applications, as follows: dynamic functionalities, diverse representation, uncertainty for running performance, innovative data handling and data transferring mechanism, vulnerability Subsequently, the problems in testing web application are discussed from functional testing , reliability testing and security testing. At last, in order to solve these problems,new testing methods are proposed, which are systematic web application testing method,random test methods, reliability testing methods and security testing methods.


2021 ◽  
Vol 6 (1) ◽  
pp. 83-90
Author(s):  
Mustofa Kamil

Due to the large amount of data stored in web applications and the increasing number of transactions on the web, the right Web Application Security Testing is very important day by day and web application is an important in business life. By increasing complexity of web systems, Security testing has become a very necessary and important activity of the life cycle of developing web applications, web security testing consists of searching for information about the network, application and looking for holes and weakness.


Author(s):  
V.D. Gligor ◽  
C.S. Chandersekaran ◽  
W. Cheng ◽  
W.D. Jiang ◽  
A. Johri ◽  
...  

Author(s):  
Seiji Munetoh ◽  
Nobukazu Yoshioka

A framework based on a scripting language is commonly used in Web application development, and high development efficiency is often achieved by applying several Agile development techniques. However, the adaptation of security assurance techniques to support Agile development is still underway, particularly from the developer's perspective. The authors have addressed this problem by developing an iterative security testing method that splits the security test target application into two parts on the basis of the code lifecycle, application logic (“active development code”) and framework (“used code”). For the former, detailed security testing is conducted using static analysis since it contains code that is changed during the iterative development process. For the latter, an abstraction library at the command granularity level is created and maintained. The library identifies the behavior of an application from the security assurance standpoint. This separation reduces the amount of code to be statically inspected and provides a mechanism for sharing security issues among application developers using the same Web application framework. Evaluation demonstrated that this method can detect various types of Web application vulnerabilities.


2020 ◽  
Vol ahead-of-print (ahead-of-print) ◽  
Author(s):  
Mochammad Rifai ◽  
Devi Fitrianah

Purpose This study aims to support an institution to hold an online meeting or conference in the middle of social distancing, which is currently in effect. Design/methodology/approach In developing this application, rapid application design methodology is used. The implementation used HTML5 and PHP for the Web and MySQL for the database and Agora Software Development Kit. To evaluate the application, the authors had a black box testing method. Findings This application will support the participant registration process, validation, payment, providing a link to the workshop to the participant, token and room name to be able to join an online meeting or conference up to the process of giving a digital attendance certificate to participants or members participating in it. Originality/value An integrated Web application provides full services, starting from the registration process, payment, the conference meeting itself and certificate of attendance.


1987 ◽  
Vol SE-13 (2) ◽  
pp. 169-183 ◽  
Author(s):  
V.D. Gligor ◽  
C.S. Chandersekaran ◽  
Wen-Der Jiang ◽  
A. Johri ◽  
G.L. Luckenbaugh ◽  
...  

Author(s):  
Taeseung Lee ◽  
Giyoun Won ◽  
Seongje Cho ◽  
Namje Park ◽  
Dongho Won

Sign in / Sign up

Export Citation Format

Share Document