- Kali Linux 2018:Assuring Security by Penetration Testing
- Shiva V. N Parasram Alex Samm Damian Boodoo Gerard Johansen Lee Allen Tedi Heriyanto Shakeel Ali
- 199字
- 2021-06-24 18:19:04
OWASP testing guide
The Open Web Application Security Project (OWASP) is an open source community project that develops software tools and knowledge-based documentation that helps people secure web applications and web services. OWASP is an open source reference point for system architects, developers, vendors, consumers, and security professionals involved in designing, developing, deploying, and testing the security of web applications and web Services. In short, the OWASP aims to help everyone and anyone to build more secure web applications and web services. One of the best aspects of the OWASP testing guide is its comprehensive description of determining the business risk presented by findings. The OWASP testing guide rates risk based on the impact it could have to the business, and the chance it will occur. By those aspects described in the OWASP testing guide, the overall risk rating of a given finding can be found out, which gives the organization appropriate guidance based on the result of their findings.
The OWASP testing guide primarily focuses on the following:
- Techniques and tools in web-application testing
- Information-gathering
- Authentication testing
- Business logic testing
- Data-validation testing
- Denial-of-service attack testing
- Session-management testing
- Web services testing
- AJAX testing
- Risk severity
- Likely hood of risk
- RESTful Java Web Services Security
- 信息安全導(dǎo)論(在線實(shí)驗(yàn)+在線自測)
- SASE原理、架構(gòu)與實(shí)踐
- 為你護(hù)航:網(wǎng)絡(luò)空間安全科普讀本(第2版)
- 暗戰(zhàn)亮劍:黑客滲透與防御全程實(shí)錄
- 網(wǎng)絡(luò)空間安全:管理者讀物
- 可信計(jì)算3.0工程初步(第二版)
- 信息安全案例教程:技術(shù)與應(yīng)用(第2版)
- 情報(bào)驅(qū)動(dòng)應(yīng)急響應(yīng)
- 網(wǎng)絡(luò)安全態(tài)勢感知
- 隱私計(jì)算:推進(jìn)數(shù)據(jù)“可用不可見”的關(guān)鍵技術(shù)
- Mastering Python for Networking and Security
- Cybersecurity Threats,Malware Trends,and Strategies
- 交換機(jī)·路由器·防火墻(第2版)
- Web安全攻防從入門到精通