TY - BOOK AU - Muhammed Rashid P (93613018) TI - Comprehensive study on web application security KW - INFORMATION SYSTEMS KW - SECURITY AND PRIVACY KW - NETWORK SECURITY N2 - Vulnerability assessment and Penetration Testing (VAPT) is the most comprehensive service for auditing, penetration testing, reporting and patching for a company’s web based applications. With port 80 constantly open for web access there is dependably a probability that an attacker can beat company’s security frameworks and have unauthorized access to your system. Vulnerability assessment and Penetration Testing are two diverse and complimentary proactive ways to deal with survey the security stance of an information system’s network. The Vulnerability Assessment is done to test the security posture of the information system both internally and externally. The major work that has to be done is to identify those vulnerabilities in networks and web applications, and hence suggest mitigation. Penetration tests provide evidence that vulnerabilities do exist as a result network penetrations are possible ER -