DAST
Dynamic Application Security Testing
Dynamic Application Security Testing probes running applications for vulnerabilities by sending crafted requests and analyzing responses. DAST tools act as external attackers, testing for injection flaws, authentication weaknesses, and configuration errors without access to source code.
Cómo se usa en ciberseguridad
Penetration testers use DAST tools as part of web application assessments to find runtime vulnerabilities. Security engineers schedule automated DAST scans against staging environments before production deployments. SOC analysts correlate DAST findings with production alerts to validate whether known weaknesses are being targeted.
Término relacionado en el glosario: dast
Las definiciones son explicaciones originales escritas con fines de desarrollo profesional. Para definiciones técnicas autorizadas, consulta NIST, ISO o el organismo de normalización correspondiente.