安全小记

Web Security:

As a user
Do not click suspicious link in suspicious places
As a website developer/tester
Never trust user input and always filter metacharacters
Cookie protection
Pay attention to Javascript

Rule
Abandon Javascript dynamic codes after page is loaded
Abandon Javascript codes when navigate to URL

Peach:
Fuzz testing is one effective type of security testing. It finds program’s defects by inputting malformed, invalid, unexpected or random data. If fuzzed inputs trigger program’s crashes, exceptions or unexpected fails, valuable bugs are found. 

 Peach is a wonderful fuzz testing platform, it has some outstanding features. Web Security

As a user Do not click suspicious link in suspicious places As a website developer/tester Never trust user input and always filter metacharacters Cookie protection Pay attention to Javascript Rule Abandon Javascript dynamic codes after page is loaded Abandon Javascript codes when navigate to URL Fuzz testing is one effective type of security testing. It finds program’s defects by inputting malformed, invalid, unexpected or random data. If fuzzed inputs trigger program’s crashes, exceptions or unexpected fails, valuable bugs are found. Peach is a wonderful fuzz testing platform, it has some outstanding features.

评论
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值