Jump to content

Interactive application security testing

From Wikipedia, the free encyclopedia
This is an old revision of this page, as edited by Citation bot (talk | contribs) at 12:38, 3 August 2022 (Add: title. Changed bare reference to CS1/2. | Use this bot. Report bugs. | Suggested by BrownHairedGirl | #UCB_webform 1502/1970). The present address (URL) is a permanent link to this revision, which may differ significantly from the current revision.

Interactive application security testing (IAST) is a security testing method that detects software vulnerabilities by interaction with the program coupled with observation and sensors.[1][2] It is distinct from static application security testing, which does not interact with the program, and dynamic application security testing, which considers the program as a black box. It may be considered a mix of both.[3]

References

  1. ^ "OWASP DevSecOps Guideline - v-0.2 | OWASP Foundation".
  2. ^ "What is IAST: Interactive Application Security Testing".
  3. ^ https://www.g2.com/articles/sast-vs-dast