This commit is contained in:
vasco
2026-05-30 22:02:31 +01:00
parent 21c9633755
commit bd0f136ccc
7 changed files with 636 additions and 497 deletions

View File

@@ -1,31 +1,27 @@
\babel@toc {portuguese}{}\relax
\contentsline {section}{\numberline {1}Introduction}{4}{section.1}%
\contentsline {section}{\numberline {2}Arquitecture considered for both stages}{4}{section.2}%
\contentsline {subsection}{\numberline {2.1}Network structure}{4}{subsection.2.1}%
\contentsline {subsection}{\numberline {2.2}Servers}{4}{subsection.2.2}%
\contentsline {subsection}{\numberline {2.3}Services}{4}{subsection.2.3}%
\contentsline {section}{\numberline {3}Web application security testing}{6}{section.3}%
\contentsline {subsection}{\numberline {3.1}Information Gathering}{6}{subsection.3.1}%
\contentsline {subsection}{\numberline {3.2}Configuration and Deployment Management Testing}{6}{subsection.3.2}%
\contentsline {subsection}{\numberline {3.3}Identity Management Testing}{6}{subsection.3.3}%
\contentsline {section}{\numberline {1}Introduction}{3}{section.1}%
\contentsline {section}{\numberline {2}Architecture Considered for Both Stages}{3}{section.2}%
\contentsline {subsection}{\numberline {2.1}Network structure}{3}{subsection.2.1}%
\contentsline {subsection}{\numberline {2.2}Servers}{3}{subsection.2.2}%
\contentsline {subsection}{\numberline {2.3}Services}{3}{subsection.2.3}%
\contentsline {section}{\numberline {3}Web application security testing}{3}{section.3}%
\contentsline {subsection}{\numberline {3.1}Information Gathering}{3}{subsection.3.1}%
\contentsline {subsection}{\numberline {3.2}Configuration and Deployment Management Testing}{4}{subsection.3.2}%
\contentsline {subsection}{\numberline {3.3}Identity Management Testing}{4}{subsection.3.3}%
\contentsline {subsection}{\numberline {3.4}Authentication Testing}{6}{subsection.3.4}%
\contentsline {subsection}{\numberline {3.5}Authorization Testing}{6}{subsection.3.5}%
\contentsline {subsection}{\numberline {3.6}Session Management Testing}{6}{subsection.3.6}%
\contentsline {subsection}{\numberline {3.7}Input Validation Testing}{6}{subsection.3.7}%
\contentsline {subsection}{\numberline {3.8}Testing for Error Handling}{6}{subsection.3.8}%
\contentsline {subsection}{\numberline {3.9}Testing for Weak Cryptography}{6}{subsection.3.9}%
\contentsline {subsection}{\numberline {3.10}Business Logic Testing}{6}{subsection.3.10}%
\contentsline {subsection}{\numberline {3.11}Client Side Testing}{6}{subsection.3.11}%
\contentsline {section}{\numberline {4}Web application security firewall}{6}{section.4}%
\contentsline {subsection}{\numberline {4.1}Information Gathering}{6}{subsection.4.1}%
\contentsline {subsection}{\numberline {4.2}Configuration and Deployment Management Testing}{6}{subsection.4.2}%
\contentsline {subsection}{\numberline {4.3}Identity Management Testing}{6}{subsection.4.3}%
\contentsline {subsection}{\numberline {4.4}Authentication Testing}{6}{subsection.4.4}%
\contentsline {subsection}{\numberline {4.5}Authorization Testing}{6}{subsection.4.5}%
\contentsline {subsection}{\numberline {4.6}Session Management Testing}{6}{subsection.4.6}%
\contentsline {subsection}{\numberline {4.7}Input Validation Testing}{6}{subsection.4.7}%
\contentsline {subsection}{\numberline {4.8}Testing for Error Handling}{6}{subsection.4.8}%
\contentsline {subsection}{\numberline {4.9}Testing for Weak Cryptography}{6}{subsection.4.9}%
\contentsline {subsection}{\numberline {4.10}Business Logic Testing}{6}{subsection.4.10}%
\contentsline {subsection}{\numberline {4.11}Client Side Testing}{6}{subsection.4.11}%
\contentsline {section}{\numberline {5}Conclusions}{6}{section.5}%
\contentsline {subsection}{\numberline {3.8}Testing for Error Handling}{7}{subsection.3.8}%
\contentsline {subsection}{\numberline {3.9}Client Side Testing}{7}{subsection.3.9}%
\contentsline {section}{\numberline {4}Web Application Security Firewall}{8}{section.4}%
\contentsline {subsection}{\numberline {4.1}Information Gathering}{8}{subsection.4.1}%
\contentsline {subsection}{\numberline {4.2}Configuration and Deployment Management Testing}{8}{subsection.4.2}%
\contentsline {subsection}{\numberline {4.3}Identity Management Testing}{8}{subsection.4.3}%
\contentsline {subsection}{\numberline {4.4}Authentication Testing}{8}{subsection.4.4}%
\contentsline {subsection}{\numberline {4.5}Authorization Testing}{8}{subsection.4.5}%
\contentsline {subsection}{\numberline {4.6}Session Management Testing}{8}{subsection.4.6}%
\contentsline {subsection}{\numberline {4.7}Input Validation Testing}{8}{subsection.4.7}%
\contentsline {subsection}{\numberline {4.8}Testing for Error Handling}{8}{subsection.4.8}%
\contentsline {subsection}{\numberline {4.9}Client Side Testing}{8}{subsection.4.9}%
\contentsline {section}{\numberline {5}Conclusions}{8}{section.5}%