Which TWO of the following security tests for a mobile banking application are examples of static security testing?
Static security testing examines source code without running the application. Manual source-code review can identify issues such as hardcoded passwords and insecure cryptographic functions, while static-analysis tools can scan source code for flaws such as buffer overflows and improper authentication mechanisms.
Community Discussion