Upper-Intermediate Testing & QA #security-testing #owasp #sast #dast #penetration-testing

Security Testing Language

5 exercises — practise writing OWASP findings, classifying CVSS severity, distinguishing SAST/DAST/IAST, structuring pentest reports, and defining engagement scope.

0 / 10 completed
1 / 10

A security tester discovers that the login endpoint accepts a SQL injection payload that returns a valid session without valid credentials. Which finding description is the most appropriate for a security test report?

Frequently Asked Questions

What does this Testing & QA Lab exercise cover?

This exercise, "Security Testing Language", tests your understanding of testing & qa lab vocabulary and phrasing through 10 multiple-choice questions drawn from real workplace scenarios.

Is this exercise free to use?

Yes. Every exercise on CoderSlingo, including this one, is completely free — no account, sign-up, or payment required.

How many questions does this exercise have?

This exercise has 10 questions. Each one presents a realistic sentence or scenario with multiple-choice options and an explanation once you answer.