Тёмный

#AskRaghav 

Automation Step by Step
Подписаться 524 тыс.
Просмотров 10 тыс.
50% 1

All FREE courses - automationstepbystep.com/
Hi Friends, today's video is for Beginners in Security Testing. If you want to start learning security testing or penetration testing, this is for you.
We will answer the following questions on security testing
What is Security Testing
How a beginner should start
Tools, Platforms, Frameworks for security testing
Mindset for security testing
Things to take care
We have Asad with us to answer your questions, Will have more sessions, Let me know your questions and feedback in the comments below
#askRaghav
Join Automation Step By Step channel: ru-vid.com...
Stories by Raghav - automationstepbystep.com/stor...
Every LIKE & SUBSCRIPTION gives me great motivation to keep working for you
You can support my mission for education by sharing this knowledge and helping as many people as you can
If my work has helped you, consider helping any animal near you, in any way you can.
Never Stop Learning
Raghav

Опубликовано:

 

5 авг 2024

Поделиться:

Ссылка:

Скачать:

Готовим ссылку...

Добавить в:

Мой плейлист
Посмотреть позже
Комментарии : 78   
@ghosty0558
@ghosty0558 3 года назад
Thank you so much, can't wait to get started. Waiting for more videos and pratical....
@RaghavPal
@RaghavPal 3 года назад
More to come!
@zuzanafarkasova5244
@zuzanafarkasova5244 3 года назад
Interesting session, good topic. I've learned something new:) Thank you Raghav and Asad, all the best!
@RaghavPal
@RaghavPal 3 года назад
Most welcome Zuzana
@pramodgurlhosur5215
@pramodgurlhosur5215 3 года назад
I am very excited and eagerly waiting for next video regarding security testing and kali linux
@RaghavPal
@RaghavPal 3 года назад
As soon as possible Pramod
@gollasiva2413
@gollasiva2413 Год назад
That's a wonderful information sir, looking forward for more videos on security testing
@RaghavPal
@RaghavPal Год назад
Sure, thanks for watching
@biswajitpati3883
@biswajitpati3883 2 года назад
🙏🏼🙏🏼🙏🏼🙏🏼🙏🏼 Thousands of salute for bringing this type content in youtube , it's way more helpful for people like me who wants career advise. Thank so much
@RaghavPal
@RaghavPal 2 года назад
Most welcome Biswajit
@UmerFarooq_697
@UmerFarooq_697 11 месяцев назад
Raghav Sir, Raise the very very precise questions to satisfy our minds as beginners. thanks, sir
@RaghavPal
@RaghavPal 11 месяцев назад
Most welcome Umer
@kidsactivitiesplayenjoyart5201
Thanks Raghav and Asad very good session informative , simple
@RaghavPal
@RaghavPal Год назад
Always welcome
@UmerFarooq_697
@UmerFarooq_697 11 месяцев назад
Raghav Sir, You always analyse things by keeping the questions in your mind
@RaghavPal
@RaghavPal 11 месяцев назад
thanks for watching
@kumaramiya11
@kumaramiya11 Год назад
Thanks, Raghav
@RaghavPal
@RaghavPal Год назад
Most welcome Amiya
@kulkarnisudheendrabharadwa2079
@kulkarnisudheendrabharadwa2079 3 года назад
Great initiative raghav please plan atleast one session in two weeks
@RaghavPal
@RaghavPal 3 года назад
Sure I will add more
@hashcodehub6717
@hashcodehub6717 3 года назад
Thank you for the video raghav
@RaghavPal
@RaghavPal 3 года назад
Most welcome
@tm-ct6qe
@tm-ct6qe 3 года назад
I have always asked this question...thank you so much sir🙏
@RaghavPal
@RaghavPal 3 года назад
Always welcome Trupti
@vinodkumar-mi5hi
@vinodkumar-mi5hi 3 года назад
Could you please make a full series on API Testing like postman, soapUI...
@RaghavPal
@RaghavPal 3 года назад
Hi Vinod, can check here under API Testing section - automationstepbystep.com/
@jayantamandal9732
@jayantamandal9732 3 года назад
Thanks a Lot.Long waiting topics.Can you please make video on how Burp suite work-Interceptor,Repetator
@RaghavPal
@RaghavPal 3 года назад
Noted Jayanta
@MuhammadSaqlain110
@MuhammadSaqlain110 3 года назад
Way to go Asad ❤️
@RaghavPal
@RaghavPal 3 года назад
Thanks for watching Saqlain
@purnaharsha4555
@purnaharsha4555 2 года назад
Hi Raghav, I couldn't find any other sessions on security testing with Asad after this. Please help me find out if I missed it. Thank You!
@RaghavPal
@RaghavPal 2 года назад
Hi Purna, as of now this is the only session, I will plan to have more sessions on this topic
@purnaharsha4555
@purnaharsha4555 2 года назад
@@RaghavPal Thank You for the response. I found the session useful and asked!
@Street2Tech
@Street2Tech Год назад
Great content as always. Thanks. My question is: pentester or automation engineer; which one has greater job prospects?
@RaghavPal
@RaghavPal Год назад
Hi Nero, The job prospects for a pentester and an automation engineer both vary depending on several factors, including the specific industry, location, and the current demand for each role. In general, pentesting (or penetration testing) is a specialized field within cybersecurity that involves simulating a real-world attack on a system to identify vulnerabilities. As the number of cyber threats continues to grow, the demand for skilled pentesters is likely to increase. On the other hand, automation engineers are responsible for developing and maintaining automation systems to improve efficiency and reduce manual work. With the growing demand for automation and digital transformation across various industries, the demand for automation engineers is also expected to increase. Both pentesters and automation engineers have good job prospects, but the specific demand for each role can vary depending on various factors. It's important to consider your skills, interests, and experience when deciding between the two fields
@Street2Tech
@Street2Tech Год назад
@@RaghavPal it’s amazing how you make time to give clear and detailed replies. Thanks a lot
@srikanth4728
@srikanth4728 3 года назад
Hi raghav, thank you for the video. currently I'm working as an automation tester. is it easy for a automation tester to move into this domain. Thank you
@RaghavPal
@RaghavPal 3 года назад
Yes, definitely
@saitejabezawada2474
@saitejabezawada2474 2 года назад
Hiee Raghav.. I come from a mechanical engineering stream.. And heard about this security testing to start with this in order to get placed.. My query is what is the Job Market for Security Testing and future
@RaghavPal
@RaghavPal 2 года назад
Hi Saiteja, Security testing has good scope, If you can develop yourself as an expert in this field and can provide real world solutions, there will be a lot of opportunities
@anumsaeed5387
@anumsaeed5387 3 года назад
Respect from Pakistan :)
@RaghavPal
@RaghavPal 3 года назад
Thanks Anum
@jagdishk3601
@jagdishk3601 3 года назад
Hi Raghav this security testing comes under DevSecOps? Thank you in advance
@RaghavPal
@RaghavPal 3 года назад
Hi Jagdish, it comes under non-functional testing, in case you are following DevSecOps, it will be a part of the process
@shijonraj3618
@shijonraj3618 3 года назад
Hi Raghav bro.. how to measure the test coverage or how much testing has be done or how much remaining is calculated in pen testing
@RaghavPal
@RaghavPal 3 года назад
Hi Shijon, we usually take help from code coverage tools that have the option for instrumentation. Not very sure if that works the same way for security testing, Will check on this
@shijonraj3618
@shijonraj3618 3 года назад
@@RaghavPal thanks
@SaiKrishna-tw3uy
@SaiKrishna-tw3uy 2 года назад
Hi Raghav Jn my current organization they are asking to learn some security testing in API postman tool. So, as a QA tester what could be the related topics which I need to learn? Plz do the needful. Thanks
@RaghavPal
@RaghavPal 2 года назад
Hi Sai, if you need to learn specific on Postman, can check this - www.optiv.com/explore-optiv-insights/blog/getting-started-postman-api-security-testing-part-1
@Street2Tech
@Street2Tech Год назад
Awesome! Do you have any paid courses on API security testing that you can refer me to?
@RaghavPal
@RaghavPal Год назад
Not as of now, can find all my courses here - automationstepbystep.com/
@hashcodehub6717
@hashcodehub6717 3 года назад
I am a single tester in the whole project and I do manual + automation testing for ui, api and load testing but still there is a lack of respect that I feel how should I overcome that
@RaghavPal
@RaghavPal 3 года назад
Hi, in what ways do you feel this, Do you think your work is not considered important or is there any communication challenges
@hashcodehub6717
@hashcodehub6717 3 года назад
@@RaghavPal Thank you so much for replying , So, I have automated UI tests and also implemented API and Load testing,I have also integrated it to the build pipelines, Those build pipelines are created by me only so currently in the project they are not following proper CI and CD, and when I raise my concern of implementing the new things into CI and CD , First thing they are not at all interested they are used to work like they were working earlier.
@RaghavPal
@RaghavPal 3 года назад
Okay, you can showcase them how the new system will help, try to convince, If you feel there is no use, can try for a switch
@hashcodehub6717
@hashcodehub6717 3 года назад
@@RaghavPal thanks you for the advice
@JIKRISHNA1
@JIKRISHNA1 Год назад
as a non programming background person can possible to learn security testing?? do we need coding skills??
@RaghavPal
@RaghavPal Год назад
Not strictly required, but can help
@ten2soft-wg9xh
@ten2soft-wg9xh 2 месяца назад
where can i get latest videos for security or penetration testing ?
@RaghavPal
@RaghavPal 2 месяца назад
I will plan on this, but can take some time. Meanwhile can let me know the specific topics you need
@ten2soft-wg9xh
@ten2soft-wg9xh 2 месяца назад
CSFR and XSS of security testing
@RaghavPal
@RaghavPal 2 месяца назад
okay I will plan on this
@pbalaji9579
@pbalaji9579 Год назад
I would like to know e2e process of security testing from where they start and end in real-time project and kind of hands-on experience session would be really great to learn
@RaghavPal
@RaghavPal Год назад
Hi Balaji, I will plan to do a session
@KM-jb3vp
@KM-jb3vp 3 года назад
1st viewer, 1st liker, 1st commenter :D
@RaghavPal
@RaghavPal 3 года назад
Thanks for watching Kaloyan
@harmeetsingh7583
@harmeetsingh7583 3 года назад
Sry to ask this question here , still if possible can you help me suggesting test case management tool other than jira to write and manage test cases for free
@RaghavPal
@RaghavPal 3 года назад
Hi Harmeet, can depend on factors like Free or Paid What all integrations do you need Community support etc
@harmeetsingh7583
@harmeetsingh7583 3 года назад
@@RaghavPal just require test case management and export and import feature with community edition
@RaghavPal
@RaghavPal 3 года назад
CAn check this www.codeinwp.com/blog/free-jira-alternatives/
@MD-fh4lb
@MD-fh4lb 3 года назад
Sir, I am not finding any selenium java automation tester job vacancy with 0-1 experience. They ask only for 2- 4 onwards experience. How to get job if I have only 3 -4 months experience in selenium -java ???? Please answer
@RaghavPal
@RaghavPal 3 года назад
can get help here - www.newtonschool.co/
@MD-fh4lb
@MD-fh4lb 3 года назад
@@RaghavPal sir , it is for full stack developer course
@RaghavPal
@RaghavPal 3 года назад
No, they just help in placements
@niralivedant7686
@niralivedant7686 2 месяца назад
Does security testing requires coding?
@RaghavPal
@RaghavPal 2 месяца назад
Nirali While it doesn't always require coding, having some coding skills can significantly enhance your effectiveness as a security tester. Let's explore this further: 1. Manual Security Testing: - Manual security testing involves analyzing an application for vulnerabilities without using automated tools. - It doesn't necessarily require coding skills, but understanding security concepts and attack vectors is essential. - Examples of manual security testing include: - Threat modeling: Identifying potential threats and risks. - Code review: Analyzing source code for security flaws. - Penetration testing: Actively probing an application for vulnerabilities. 2. Automated Security Testing: - Automated tools play a vital role in security testing. These tools help identify vulnerabilities efficiently. - Some popular security testing tools include: - OWASP ZAP: An open-source web application security scanner. - Nessus: A vulnerability scanner. - Burp Suite: Used for web application security testing. - While using these tools, you'll need to understand their configuration, interpret results, and possibly customize scripts or rules. 3. Coding Skills for Security Testing: - Having coding skills allows you to: - Write custom scripts: For specific security tests or scenarios. - Automate repetitive tasks: Such as sending payloads, analyzing responses, or fuzzing inputs. - Integrate security testing into CI/CD pipelines: By writing scripts or using existing tools. - Understand security libraries and frameworks: For secure coding practices. - Common languages for security testing include Python, JavaScript, and Bash. 4. Examples of Coding in Security Testing: - SQL Injection Testing: - You'll need to craft malicious SQL queries to test if an application is vulnerable. - Example (Python): ```python payload = "' OR '1'='1" # Send payload to input fields and check for SQL errors ``` - Cross-Site Scripting (XSS) Testing: - Writing JavaScript payloads to inject into input fields or URLs. - Example (JavaScript): ```javascript alert('XSS!'); ``` 5. Learning Resources: - Explore online tutorials, blogs, and courses related to security testing. - Practice on intentionally vulnerable applications (e.g., OWASP Juice Shop). - Join security communities and forums to learn from others. In summary, while coding isn't always mandatory for security testing, having coding skills empowers you to perform more comprehensive and efficient security assessments --
@wild4883
@wild4883 3 года назад
Make collaboration with Russian specialists)
@RaghavPal
@RaghavPal 3 года назад
I will plan
Далее
Schoolboy - Часть 2
00:12
Просмотров 5 млн
Иран и Израиль. Вот и всё
19:43
Просмотров 1,5 млн
Security Testing - What is Security Testing?
7:16
Просмотров 30 тыс.
Docker Tutorial for Beginners [FULL COURSE in 3 Hours]
2:46:15