From the course: CSSLP Cert Prep: 2 Secure Software Requirements

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Misuse and abuse cases

Misuse and abuse cases

From the course: CSSLP Cert Prep: 2 Secure Software Requirements

Start my 1-month free trial

Misuse and abuse cases

- [Instructor] Application developers often build test cases to make sure that an application does what it was designed to do. Criminals, on the other hand, want to see if they can make an app do something it wasn't designed to do. As a CSSLP, you'll help bridge the gap between criminal thinking and defensive applications by designing misuse and abuse cases. The terms misuse and abuse are used here interchangeably. Ultimately, they're meant to describe a specific type of test case. When a developer or quality assurance analyst creates a use case, they refer to the requirements as a template. They look for the things that the app is supposed to do, and then they build test cases to validate that the app works as expected. When you help them to find misuse and abuse cases, your job is to think like an attacker. You're looking for ways you might intentionally break the app and make it do something it wasn't designed to do.…

Contents