Case study – online shopping site for automated security inspection

We will be using the vulnerable website Hackazon to demonstrate automation security testing techniques: http://hackazon.webscantest.com/. We will be using three cases to explore the testing scenario and automation techniques, which are listed in the following table:

Case scenario Security testing objective Security automation techniques
Case 1—web security testing using the ZAP REST API General web security assessments
  • ZAP active scanning mode
  • Use of the ZAP REST API
Case 2—full automation with CURL and the ZAP daemon
  • Running ZAP in daemon mode
  • Automating the ZAP REST API and CURL
Case 3—automated security testing for the user registration flow Security assessments for the user registration flow
  • ZAP security assessments with proxy mode
  • Selenium web UI automation
  • ZAP with CURL REST API operations
..................Content has been hidden....................

You can't read the all page of ebook, please click here login for view all page.
Reset
18.224.214.215