testing

RSS
  • Microsoft offers tools for secure app development

    Posted September 16, 2009 - 12:34 pm

    The tools help developers add security and privacy provisions into the development lifecycle, but their enterprise usefulness is unclear as they are only for C and C++.
  • Implementing a Risk-Based Approach to Static Testing

    Posted April 20, 2009 - 7:21 am

    Static Testing is a well-known and beneficial concept within the testing space, but tightened budgets and looming deadlines can hinder the benefits. Here are few suggestions on how taking a risk-based approach to static testing can help realize the benefits.
  • Performance Testing of Trading Applications

    Posted April 20, 2009 - 6:55 am

    As trading has become electronic, trading applications need to be reliable and effective; emphasizing more on the speed of delivery with peaks and troughs in demand.
  • Testing Approach for Reg NMS Compliance

    Posted April 20, 2009 - 6:48 am

    The new Regulation National Market System (Reg NMS) has brought in major changes in the structure of the equities markets in the USA. As the original NMS framework dates back almost three decades, it is obvious that the old framework cannot fit into the intricate trading systems of the present era.
  • Why Outsource Testing?

    Posted February 9, 2009 - 9:28 am

    TEAM International provides a brief overview of Outsourced QA & Testing and its advantages over the in-house QA & Testing efforts.
  • Fuzzing Is Still Widely Unknown

    Posted January 19, 2009 - 9:18 am

    Based on a recent study by Gary McGraw and other well known security gurus, all major product security teams apparently use fuzzing. But most (even security specialists) still seem to misunderstand what fuzzing really is about. Enter the world of fuzzing!
  • Testing - the pain, the power, the money

    Posted December 29, 2008 - 11:39 am

    The first big dirty secret of coding is that to do it well, you need to spend as much time coding around your core code as you spend, coding the core code itself.
  • Ensuring Service Enablement from SOA

    Posted December 12, 2008 - 4:21 am

    Organizations use IT for service enablement and IT has proven itself to be essential to provide the levels of service that customers demand.
  • Future of Software Testing

    Posted November 7, 2008 - 2:37 am

  • AppLabs eCommerce Survey: Holiday Season, 2008

    Posted November 4, 2008 - 7:47 pm

    A survey by AppLabs finds that more than 25% of respondents are concerned that their websites are at risk for failure. AppLabs is the largest independent global IT services company specializing in quality management, testing, and certification solutions.
  • VoIP Still Not Ready For Carrier-Grade Networks

    Posted October 2, 2008 - 12:22 pm

    After a quick tour of some Really Talented Groups dedicated to fuzzing research, I noticed three things: 1) Most teams are focused on fuzzing VoIP 2) Most if not all VoIP devices still break with fuzzing 3) Most VoIP vendors still do not get it. The tour continues...
  • Reason Behind Vulnerabilities

    Posted September 8, 2008 - 2:54 pm

    Now something completely unrelated to VoIP: Reason behind all vulnerabilities in software! I read an article that explained how vulnerabilities are basically created by the fact that people tend to drift from good development principles into practices that are just simply Fun. The engineers among us know that software development can be enormously interesting, something you would happily even do in your leisure time. But can fun be converted into reliable software?
  • (Is There) Motivation for VoIP Fuzzing

    Posted September 4, 2008 - 2:06 am

    What have we learned during these six or so years of proactive security work with VoIP fuzzing? Here is my top ten discoveries.
  • Coverity CEO Named by MIT Technology Review as One of World's Top Innovators Under 35

    Posted September 2, 2008 - 6:52 am

    Coverity, the leader in improving software quality and security, announced that the company’s CEO, Seth Hallem, has been recognized by the Massachusetts Institute of Technology (MIT) Technology Review magazine as one of the world’s top innovators under the age of 35, for contributions in the field of software quality and testing. Selected by a panel of expert judges and the editorial staff of Technology Review, those named to the TR35 represents an elite group of accomplished individuals who exemplify the spirit of innovation.
  • Quality problems cost software companies up to $22 million annually

    Posted August 19, 2008 - 7:53 am

    A new white paper by International Data Corporation (IDC), found existing software quality approaches at most companies are inadequate to address the internal and external costs of software defects. Sponsored by Coverity, the IDC white paper “Improving Software Quality to Drive Business Agility,” found that development organizations find major problems with their software even after quality assurance and spend significant amounts of effort and time to repair those defects.
  • VoIP security auditing is becoming more and more complex ... Not!

    Posted August 15, 2008 - 6:14 am

    I am curious how people can conduct penetration tests of a complex VoIP system when they barely understand how VoIP infrastructure works. Today, security people are still stuck to auditing practices from 1990s. When asked to do a penetration test, a consultant often is only looking at past issues that can be detected using various vulnerability scanners. Very few of them know that vulnerability scanners have extremely bad coverage of vulnerabilities in VoIP solutions. And even if the tools did know VoIP, who really cares about past issues that might have been relevant several years ago.
  • Testing service-oriented architectures: A primer

    Posted August 4, 2008 - 1:29 pm

    How to test service-oriented architectures is no idle question. A failure in a SOA system at Heathrow Airport's US$8.6 Billion Terminal 5 caused 1.6 British Pounds (about 3.2 million U.S. dollars) of losses in one week. The error? Simply that a filter put in to ensure that the baggage handler was tested in isolation was never removed-so event messages were never passed on to other, dependent systems.
  • Free Webinar: Coverity Software Readiness Manager for Java

    Posted July 31, 2008 - 5:41 am

    Join Coverity for a web seminar to learn more about Coverity Software Readiness Manager, our newest product for ensuring superior software integrity. Today’s development managers and executives need objective, reliable data so they can make informed decisions about code readiness and risk. Software Readiness Manager delivers key intelligence about your Java code bases, allowing you to: • Objectively determine if code is ready to ship • Reliably assess the quality of existing/acquired/outsourced/open source code • Correlate code coverage with risk to ensure adequate testing
  • Coverity™ Introduces New Static Analysis Solution for C#

    Posted July 23, 2008 - 12:15 am

    Coverity™, Inc., the leader in improving software quality and security, announced Coverity Prevent™ for C#. The product utilizes a new analysis engine developed by Coverity’s research and development lab that is designed specifically for detecting defects in applications built on Microsoft’s .NET framework. Prevent for C# expands the language coverage of Coverity’s static analysis products, and brings the company’s proven expertise in automatic defect detection to developers programming in C#.
Ask a Question