/secqation-documentation

Reference documentation for "SecQAtion - Test Automation using Robot Framework" training

SecQAtion - Security Tests Automation using Robot Framework

What are we solving?

While doing a security assessment:

  • Get rid of boring manual tasks
  • Make your job fun and productive
  • Ensure consistency and repeatability
  • Generate business friendly test reports
  • Let developers incorporate your tests into their build pipeline
  • Adapt and evolve, quickly and easily

Scenario 1:

Basic Flow


Scenario 2:

Mitmproxy


Scenario 3:

Docker


Scenario 4:

Jenkins and GitHub

Table of Contents

  1. General Understanding of Security Testing Approach
  2. OWASP Top 10
  3. Inconveniences/Gaps
  4. Introduction to Robot Framework
  5. Configuring PyCharm
  6. Recommended Folder Structure
  7. Basic Elements of Robot Framework
  8. Exercise: Structured Reconnaisance in <10 min
  9. mitmproxy: Intercepting API Requests & Responses
  10. Pabot: Parallel Processing
  11. Understanding Docker and Docker Compose
  12. Dockerizing Selenium Test Execution Environment
  13. CI/CD Build Pipeline
  14. Serving test report via S3 and CloudFront
  15. Implementing authentication via Lamda Edge
  16. Leveraging HTTPolice
  17. Basics of Python programming
  18. Example: Custom Keywords Library
  19. When and How to Use Burp Suite
  20. DVWA: Get Your Hands Dirty