首页> 外文期刊>IEEE Security & Privacy Magazine >Web application security assessment tools
【24h】

Web application security assessment tools

机译:Web应用程序安全评估工具

获取原文
获取原文并翻译 | 示例
           

摘要

Security testing a Web application or Web site requires careful thought and planning due to both tool and industry immaturity. Finding the right tools involves several steps, including analyzing the development environment and process, business needs, and the Web application's complexity. Here, we describe the different technology types for analyzing Web applications and Web services for security vulnerabilities, along with each type's advantages and disadvantages. At Foundstone, we work with some of the world's biggest banks and telecommunications companies to identify and resolve security issues. Together with our clients, we face challenging testing scenarios in the context of demanding applications and complex business environments. We've seen firsthand what works and what doesn't; what's marketing hype and what gets results. Our analysis here is based on our collective experiences and the lessons we've learned along the way.
机译:由于工具和行业的不成熟,对Web应用程序或Web站点进行安全测试需要仔细考虑和计划。寻找合适的工具涉及几个步骤,包括分析开发环境和过程,业务需求以及Web应用程序的复杂性。在这里,我们描述了用于分析Web应用程序和Web服务的安全漏洞的不同技术类型,以及每种类型的优缺点。在Foundstone,我们与一些世界上最大的银行和电信公司合作,以发现并解决安全问题。与我们的客户一起,我们在要求苛刻的应用程序和复杂的业务环境中面临具有挑战性的测试方案。我们已经亲眼目睹了什么有效,什么无效。什么是营销炒作,什么能带来结果。我们在这里的分析是基于我们的集体经验和我们在此过程中学到的教训。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号