3 Widely Used Types of Attacks on Web Software - PowerPoint PPT Presentation

About This Presentation
Title:

3 Widely Used Types of Attacks on Web Software

Description:

Nowadays software products, in particularly web-based ones, are widely utilized in almost all the business segments and leisure. – PowerPoint PPT presentation

Number of Views:9

less

Transcript and Presenter's Notes

Title: 3 Widely Used Types of Attacks on Web Software


1
3 Widely Used Types of Attacks on Web Software
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
2
3 Widely Used Types of Attacks on Web Software
Nowadays software products, in particularly
web-based ones, are widely utilized in almost all
the business segments and leisure.
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
3
3 Widely Used Types of Attacks on Web Software
Web apps allow to buy goods, manage various
processes, perform money transactions, etc. They
attract attention of hackers because they process
confidential data. That is why any web site
testing, desktop testing and mobile
testing should allocate substantial time on
thorough security testing and discovering the
system vulnerabilities.
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
4
Experts in Web Software Security Mention Such
Widely Applied Types of Cyber-Attacks
SQL injection
Cross-site scripting or XSS
Manipulations with URL
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
5
SQL Injection
Computer burglars inject SQL commands into an SQL
queries through the web software user interface.
The server executes the query and allows the
malicious user to steal or alter data in the web
application database.
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
6
Cross-site scripting or XSS
This popular type of web software vulnerabilities
allows hackers to insert malicious code into the
UI of web software so that the inserted elements
can be seen by other users. The code runs, when a
user opens the page, and interacts with the web
server providing the hacker access to the
application data.
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
7
Manipulations with URL
Web software often transfers data from the
browser running on the client computer to the
server and vice versa by means of URL. Change in
the URL may give access to the system data if
this type of vulnerability is not revealed during
manual or automated testing.
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
8
Thank You for Your Attention
Office in Ukraine Phone 380 (472)
5-61-6-51 E-mail contact_at_qa-testlab.com Address
154a, Borschagivska str., Kiev,
Ukraine http//qatestlab.com/
Write a Comment
User Comments (0)
About PowerShow.com