Answer the question
In order to leave comments, you need to log in
What is the web project security audit algorithm?
Hello, I need to conduct a security audit of a web project, how can I do it? is there any algorithm of actions? Scanning ports and using x spider comes to mind, but I feel that this is complete garbage. What else do you need to know and do?
I would like a step-by-step algorithm, then I'll google it.
Answer the question
In order to leave comments, you need to log in
www.comodo.com/hackerproof/questions.html
Most of the nastiness will be found (and in the code too).
And then - scan ports, see what sticks out, get rid of it or upgrade to versions without known vulnerabilities. Well, install snoopy, look through it, what's going on in the system.
If it’s not just a “play around”, but a really important project, then it’s better to turn to professionals.
Well, in pursuit of Komodo, I’ll tell you the Fortify on Demand service from Fortify (now owned by HP), it has a free version. This is a source code check for security issues.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question