当前位置:网站首页>Test objects involved in safety test
Test objects involved in safety test
2022-07-06 11:08:00 【As。】
Key points of safety testing : Data flow , Input and output
Test object : The server 、 database 、 Third party services and interfaces 、web Applications
1. Application deployment environment ( The server )
The strength of the operating system user name and password Operating system users
User groups and permission settings
System vulnerabilities and patches
Application deployment environment directory and file security
Firewall and network port settings
2. database
Database server version and vulnerability
User name and password settings
User permission settings and authorization settings of the database
Database server port and network connection settings
3.web Application security testing
sql Inject
Form vulnerability
cookie cheating
session test
Log file test
Cross Station attack
Authentication and session attacks
Unsafe object direct reference attack
4. Third party services and interfaces
Service system version and vulnerabilities
Security configuration test
Data transmission security test
Data legitimacy test Data integrity test
边栏推荐
- @controller,@service,@repository,@component区别
- Solution: log4j:warn please initialize the log4j system properly
- Ubuntu 20.04 安装 MySQL
- [recommended by bloggers] C MVC list realizes the function of adding, deleting, modifying, checking, importing and exporting curves (with source code)
- JDBC principle
- 自动机器学习框架介绍与使用(flaml、h2o)
- windows无法启动MYSQL服务(位于本地计算机)错误1067进程意外终止
- Idea import / export settings file
- MySQL20-MySQL的数据目录
- Django运行报错:Error loading MySQLdb module解决方法
猜你喜欢

MySQL19-Linux下MySQL的安装与使用

Django运行报错:Error loading MySQLdb module解决方法

CSDN问答标签技能树(一) —— 基本框架的构建

Swagger, Yapi interface management service_ SE

MySQL21-用戶與權限管理

图像识别问题 — pytesseract.TesseractNotFoundError: tesseract is not installed or it‘s not in your path

MySQL主从复制、读写分离

Leetcode 461 Hamming distance

A brief introduction to the microservice technology stack, the introduction and use of Eureka and ribbon
![[recommended by bloggers] asp Net WebService background data API JSON (with source code)](/img/04/c721e6177b578b30cbbf334cb1b6c9.png)
[recommended by bloggers] asp Net WebService background data API JSON (with source code)
随机推荐
[BMZCTF-pwn] 11-pwn111111
CSDN-NLP:基于技能树和弱监督学习的博文难度等级分类 (一)
Ansible practical series I_ introduction
CSDN问答标签技能树(一) —— 基本框架的构建
导入 SQL 时出现 Invalid default value for ‘create_time‘ 报错解决方法
Why can't I use the @test annotation after introducing JUnit
连接MySQL数据库出现错误:2059 - authentication plugin ‘caching_sha2_password‘的解决方法
Navicat 導出錶生成PDM文件
Remember a company interview question: merge ordered arrays
JDBC原理
CSDN Q & a tag skill tree (V) -- cloud native skill tree
Ansible practical Series III_ Task common commands
La table d'exportation Navicat génère un fichier PDM
CSDN问答标签技能树(五) —— 云原生技能树
SSM integrated notes easy to understand version
自动机器学习框架介绍与使用(flaml、h2o)
Asp access Shaoxing tourism graduation design website
01项目需求分析 (点餐系统)
02-项目实战之后台员工信息管理
Why is MySQL still slow to query when indexing is used?