当前位置:网站首页>Test objects involved in safety test
Test objects involved in safety test
2022-07-06 11:08:00 【As。】
Key points of safety testing : Data flow , Input and output
Test object : The server 、 database 、 Third party services and interfaces 、web Applications
1. Application deployment environment ( The server )
The strength of the operating system user name and password Operating system users
User groups and permission settings
System vulnerabilities and patches
Application deployment environment directory and file security
Firewall and network port settings
2. database
Database server version and vulnerability
User name and password settings
User permission settings and authorization settings of the database
Database server port and network connection settings
3.web Application security testing
sql Inject
Form vulnerability
cookie cheating
session test
Log file test
Cross Station attack
Authentication and session attacks
Unsafe object direct reference attack
4. Third party services and interfaces
Service system version and vulnerabilities
Security configuration test
Data transmission security test
Data legitimacy test Data integrity test
边栏推荐
- npm一个错误 npm ERR code ENOENT npm ERR syscall open
- LeetCode #461 汉明距离
- Dotnet replaces asp Net core's underlying communication is the IPC Library of named pipes
- CSDN问答模块标题推荐任务(二) —— 效果优化
- Ansible practical series I_ introduction
- Unable to call numpy in pycharm, with an error modulenotfounderror: no module named 'numpy‘
- QT creator specifies dependencies
- Have you mastered the correct posture of golden three silver four job hopping?
- CSDN问答标签技能树(一) —— 基本框架的构建
- CSDN question and answer tag skill tree (II) -- effect optimization
猜你喜欢

MySQL20-MySQL的数据目录

Mysql21 user and permission management
![[free setup] asp Net online course selection system design and Implementation (source code +lunwen)](/img/ac/b518796a92d00615cd374c0c835f38.jpg)
[free setup] asp Net online course selection system design and Implementation (source code +lunwen)

Win10: how to modify the priority of dual network cards?

QT creator specifies dependencies

Neo4j installation tutorial

MySQL主從複制、讀寫分離

Basic use of redis
![[recommended by bloggers] asp Net WebService background data API JSON (with source code)](/img/04/c721e6177b578b30cbbf334cb1b6c9.png)
[recommended by bloggers] asp Net WebService background data API JSON (with source code)

35 is not a stumbling block in the career of programmers
随机推荐
Have you mastered the correct posture of golden three silver four job hopping?
Ansible实战系列三 _ task常用命令
CSDN问答模块标题推荐任务(二) —— 效果优化
Ansible实战系列二 _ Playbook入门
CSDN markdown editor
La table d'exportation Navicat génère un fichier PDM
Some notes of MySQL
++Implementation of I and i++
MySQL主從複制、讀寫分離
Ubuntu 20.04 安装 MySQL
CSDN问答模块标题推荐任务(一) —— 基本框架的搭建
Yum prompt another app is currently holding the yum lock; waiting for it to exit...
A trip to Macao - > see the world from a non line city to Macao
JDBC principle
CSDN question and answer tag skill tree (II) -- effect optimization
MySQL flush operation
csdn-Markdown编辑器
Kubesphere - deploy the actual combat with the deployment file (3)
记一次某公司面试题:合并有序数组
打开浏览器的同时会在主页外同时打开芒果TV,抖音等网站