Web Application Testing
Web applications are increasingly the front line interface between you and your customers and within your organisation. Integralis Web Application Testing services build on our Penetration Testing services to give you a comprehensive view of your vulnerabilities and risk.
Our web application security experts employ a combination of automated tests using the latest tools and technology and manual testing and examination. We include a detailed analysis of any custom website application logic so that we gain a thorough understanding of your web application risks.
We test across the full spectrum of potential vulnerabilities including the top ten threats identified by the Open Web Application Security Project (OWASP):
- Cross site scripting (XSS)
- Injection flaws
- Malicious file execution
- Insecure direct object reference
- Cross site request forgery (CSRF)
- Information leakage and improper error handling
- Broken authentication and session management
- Insecure cryptographic storage
- Insecure communications
- Failure to restrict URL access
