- IDOR (Insecure Direct Object reference)
- Input validation Script tags, HTML tags, SQL Injection
- OTP BYPassMobile No. & Email
- Payment Amount Tampering
- Appendage if information : Enumeration of Data
- Secret keys and Account Information should not be used in API, JS, HTML etc.
- Validated Tokens
- Manipulating API Responses
- Cross team Integrations
- Third party Integrations
- Sharing of personal Identification Information
- API errors and Session Timeouts
- Data Privacy (Photo by Luther Bottrill on Unsplash)
Post Top Ad
Responsive Ads Here
May 14, 2019

Security Testing Test Coverage
Tags
# Security Testing
Share This

About Ishan Dev Shukl
Security Testing
Tags
Security Testing
Subscribe to:
Post Comments (Atom)
Post Bottom Ad
Responsive Ads Here
Author Details
Digital identity is my passion. People find me to be a self-motivated team player with excellent communication skills. I'm a techie having almost 10 years of experience in Software Testing and Blogging!
No comments:
Post a Comment
Thanks a lot for your valuable Comment!