On the applicability of combinatorial testing to web application security testing: a case study

Bernhard Garn, Ioannis Kapsalis, Dimitris E. Simos, Severin Winkler · 2014

Case studies for evaluating tools in security testing are powerful. Although they cannot achieve the scientific rigor of formal experiments, the results can provide sufficient information to help professionals judge if a specific technology being evaluated will benefit their organization. This paper reports on a case study done for evaluating and revisiting a recently introduced combinatorial testing methodology used for web application security purposes. It further reports on undertaken practical experiments thus strengthening the applicability of combinatorial testing to web application security testing.

Read the paper · More papers on PaperTik