当前位置:网站首页>安全测试涉及的测试对象
安全测试涉及的测试对象
2022-07-06 09:13:00 【As。】
安全测试的关键点: 数据流,输入输出
测试对象:服务器、数据库、第三方服务及接口、web应用程序
1.应用程序的部署环境(服务器)
操作系统用户名以及密码的强度 操作系统用户
用户组以及权限设置
系统漏洞以及补丁
应用部署环境目录以及文件安全
防火墙以及网络端口设置
2.数据库
数据库服务器版本以及漏洞
用户名和密码设置
数据库的用户权限设置以及授权设置
数据库服务器端口以及网络连接设置
3.web应用安全测试
sql注入
表单漏洞
cookie欺骗
session测试
日志文件测试
跨站攻击
认证以及会话攻击
不安全对象直接引用攻击
4.第三方服务以及接口
服务系统版本以及漏洞
安全性配置测试
数据传输安全性测试
数据合法性测试 数据完整性测试
边栏推荐
- Water and rain condition monitoring reservoir water and rain condition online monitoring
- C语言标准的发展
- Mysql 其他主机无法连接本地数据库
- MySQL18-MySQL8其它新特性
- MySQL flush operation
- How to find the number of daffodils with simple and rough methods in C language
- Valentine's Day is coming, are you still worried about eating dog food? Teach you to make a confession wall hand in hand. Express your love to the person you want
- Global and Chinese markets of static transfer switches (STS) 2022-2028: Research Report on technology, participants, trends, market size and share
- Mysql28 database design specification
- CSDN-NLP:基于技能树和弱监督学习的博文难度等级分类 (一)
猜你喜欢
Mysql34 other database logs
MySQL主从复制、读写分离
Valentine's Day is coming, are you still worried about eating dog food? Teach you to make a confession wall hand in hand. Express your love to the person you want
csdn-Markdown编辑器
MySQL 29 other database tuning strategies
【博主推荐】C#MVC列表实现增删改查导入导出曲线功能(附源码)
Navicat 導出錶生成PDM文件
API learning of OpenGL (2003) gl_ TEXTURE_ WRAP_ S GL_ TEXTURE_ WRAP_ T
CSDN question and answer module Title Recommendation task (I) -- Construction of basic framework
Mysql21 user and permission management
随机推荐
Unicode decodeerror: 'UTF-8' codec can't decode byte 0xd0 in position 0 successfully resolved
++Implementation of I and i++
Global and Chinese market of thermal mixers 2022-2028: Research Report on technology, participants, trends, market size and share
MySQL28-数据库的设计规范
Global and Chinese market of operational amplifier 2022-2028: Research Report on technology, participants, trends, market size and share
API learning of OpenGL (2005) gl_ MAX_ TEXTURE_ UNITS GL_ MAX_ TEXTURE_ IMAGE_ UNITS_ ARB
Mysql27 - Optimisation des index et des requêtes
MySQL18-MySQL8其它新特性
Texttext data enhancement method data argument
Mysql21 user and permission management
[untitled]
Solve the problem that XML, YML and properties file configurations cannot be scanned
MySQL完全卸载(Windows、Mac、Linux)
La table d'exportation Navicat génère un fichier PDM
Global and Chinese market for intravenous catheter sets and accessories 2022-2028: Research Report on technology, participants, trends, market size and share
API learning of OpenGL (2004) gl_ TEXTURE_ MIN_ FILTER GL_ TEXTURE_ MAG_ FILTER
MySQL27-索引优化与查询优化
[C language foundation] 04 judgment and circulation
Pytorch RNN actual combat case_ MNIST handwriting font recognition
MySQL25-索引的创建与设计原则