From the course: Cloud Data, Platform, and Applications Security by Pearson

Unlock this course with a free trial

Join today to access over 25,200 courses taught by industry experts.

Abuse case testing

Abuse case testing

In this short video, we're going to talk about a specific type of test on the exam referred to as an abuse case test or abuse case testing. Now this was added to the update in summer of 2022. So expect a question on this. So in the DevSecOps lifecycle, and of course we're focused on the security part, between the phase where we're doing the risk-based security test from an application development standpoint and then determining our security requirements, if they're met or not, okay, we have this possible and optional, so it is optional, abuse case testing. So this is a technique for using a particular software feature or function in a way that it wasn't expected by whoever's implementing it. So if you're using a containerized development platform and the customer or the consumer asks for a certain feature or a certain function, often as part of your rapid development, you're going to introduce this new feature, this new component, or this new microservice rather quickly and possibly…

Contents