Link to home
Start Free TrialLog in
Avatar of Rohit Bajaj
Rohit BajajFlag for India

asked on

what are the possibile Attacks that can be done on a web Application or web site

HI,
I just finished making my spring mvc java based web application. Although i am running it only on my local computer.
Later i discovered there is a flaw in the code... And the Web app can be exploited through XSS cross site scripting
attack.
although i can now take care of it.
But how do i find out what other possible attacks my Web Application may be suceptible to.
Is there any way to check this ? or a list consisting of possible hacks of a website which one should follow.

Thanks
ASKER CERTIFIED SOLUTION
Avatar of dgrafx
dgrafx
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of btan
btan

kill off the low hanging as that is totally naked to the attacker scavenging for those and scanner is just one part of the testing regime, do not be overly obsessed with scanning tools eventually we talking about secure coding and doing best to make sure bugs and holes are removed - manual testing by peer will help if there is some code review expertise in your team...