This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org
Testing for Session puzzling (OTG-SESS-008)
From OWASP
Revision as of 13:26, 14 November 2013 by Andrew Muller (talk | contribs) (Andrew Muller moved page Testing for Session puzzling (OWASP-SESS-010) to Testing for Session puzzling (OTG-SESS-010): Clean up of new OTG numbering scheme)
This article is part of the new OWASP Testing Guide v4.
Back to the OWASP Testing Guide v4 ToC: https://www.owasp.org/index.php/OWASP_Testing_Guide_v4_Table_of_Contents Back to the OWASP Testing Guide Project: https://www.owasp.org/index.php/OWASP_Testing_Project
Brief Summary
..here: we describe in "natural language" what we want to test.
Description of the Issue
...here: Short Description of the Issue: Topic and Explanation
Black Box testing and example
Testing for Topic X vulnerabilities:
...
Result Expected:
...
References
Whitepapers
...
Tools
...