Open Access Open Access  Restricted Access Subscription Access

Practical Security Testing of Electronic Commerce Web Applications


Affiliations
1 Assistant Professor, Department of Computer Science, Jaypee Institute of Information Technology, Noida, India
2 Solution Advisor, Delloitte USI, Gurugram, India
 

The availability of the internet and cheaper data tariffs made the effective use of Electronic Commerce (ecommerce) applications by the people for purchasing the daily needs and regular household items. The success of the e-commerce platforms is based on the trust and security that they maintain regarding users personal and payment data. However, the poor design and development, unnoticed mistakes in coding of the E-commerce websites and applications lead to many vulnerabilities and thereby becomes the simple target for the hackers. Along with conventional security testing methods, application dependent methods need to be applied on the ecommerce web applications which are built using various programming environments. To this end, this paper presents various possible practical security methods followed by penetration testers along with countermeasures that can be applicable for avoiding vulnerabilities in e-commerce websites.

Keywords

E-Commerce, Penetration Testing, Security, Testing, Trust, Vulnerability.
User
Notifications
Font Size


  • Practical Security Testing of Electronic Commerce Web Applications

Abstract Views: 289  |  PDF Views: 1

Authors

P. Raghu Vamsi
Assistant Professor, Department of Computer Science, Jaypee Institute of Information Technology, Noida, India
Agrah Jain
Solution Advisor, Delloitte USI, Gurugram, India

Abstract


The availability of the internet and cheaper data tariffs made the effective use of Electronic Commerce (ecommerce) applications by the people for purchasing the daily needs and regular household items. The success of the e-commerce platforms is based on the trust and security that they maintain regarding users personal and payment data. However, the poor design and development, unnoticed mistakes in coding of the E-commerce websites and applications lead to many vulnerabilities and thereby becomes the simple target for the hackers. Along with conventional security testing methods, application dependent methods need to be applied on the ecommerce web applications which are built using various programming environments. To this end, this paper presents various possible practical security methods followed by penetration testers along with countermeasures that can be applicable for avoiding vulnerabilities in e-commerce websites.

Keywords


E-Commerce, Penetration Testing, Security, Testing, Trust, Vulnerability.

References