Results (
Thai) 1:
[Copy]Copied!
After identifying a misuse story, the next step is to createan acceptance test that manifests the story using the webtesting tool Selenium (http://www.openqa.org/selenium/).The rationale for using Selenium for security testing isto leverage a tool that is already in use by the developmentteam, avoid learning and maintaining a separate tool forsecurity. Furthermore, a familiar tool could help to narrowthe gap between ‘a typical’ developer and a security specialist.Having security requirements written as web testsalso supports and enhances collective ownership.
Being translated, please wait..
