We use cookies

We use cookies and similar technologies to measure traffic and improve your experience. Privacy policy

Skip to content
CT-STE — Security Test Engineer

ISTQB · Topic 5 of 15

Application Security Testing

White-box, black-box, and grey-box approaches at application level. Source-aware fuzzing.

6 lessons180 questions

What this topic covers

  1. 01Abuse Cases and Attack Trees for Security Test Design360m
  2. 02CVE, CVSS, DAST, Fuzzing, and Cryptographic Failures480m
  3. 03Hardcoded Credentials, IAM Testing, Injection, and More480m
  4. 04NVD, OWASP Top 10, PASTA, and Platform-Specific Vulnerabilities600m
  5. 05SAST, SCA, SBOM, and Supply Chain Security Testing480m
  6. 06Synthetic Data, IAST, DREAD, and Shift-Left Security Testing480m