NORMA eResearch @NCI Library

Comparative analysis of Static application security testing (SAST) and Dynamic application security testing (DAST) by using open-source web application penetration testing tools

Dencheva, Lyubka (2022) Comparative analysis of Static application security testing (SAST) and Dynamic application security testing (DAST) by using open-source web application penetration testing tools. Masters thesis, Dublin, National College of Ireland.

[thumbnail of Master of Science]
Preview
PDF (Master of Science)
Download (810kB) | Preview
[thumbnail of Configuration manual]
Preview
PDF (Configuration manual)
Download (1MB) | Preview

Abstract

In the current age of fundamental science, technological progress and the fully globalized world of technology, Cybersecurity is extremely important to ensure a high level of protection in every single area of life. In addition, the challenges, and threats to securing protection in cyberspace are constantly increasing. There are many methods to prevent Cybersecurity, one of the fundamental and basic methods is performing security testing for vulnerabilities. It is the focus of this master’s thesis, which aims to examine, research, analyse, compare, and summarize the two main methods for performing this type of testing, namely Static application security testing (SAST) and Dynamic application security testing (DAST). Based on the prepared comparative analysis, the advantages, and disadvantages of both types of tools are established, which can be used as a basis for modelling a solution to achieve the most detailed, comprehensive, productive, and efficient performance of security testing for vulnerabilities. Achieving this extremely important research goal, the master’s thesis supports finding a solution for a complex combination of Static and Dynamic Application Security Testing tools, through which to examine web applications for vulnerabilities and to fix them, to increase the level of protection and ensure a high, reliable and effective Cybersecurity.

Item Type: Thesis (Masters)
Subjects: Q Science > QA Mathematics > Electronic computers. Computer science
T Technology > T Technology (General) > Information Technology > Electronic computers. Computer science
Q Science > QA Mathematics > Computer software > Computer Security
T Technology > T Technology (General) > Information Technology > Computer software > Computer Security
Divisions: School of Computing > Master of Science in Cyber Security
Depositing User: Clara Chan
Date Deposited: 02 Dec 2022 11:52
Last Modified: 02 Dec 2022 11:52
URI: https://norma.ncirl.ie/id/eprint/5956

Actions (login required)

View Item View Item