 Amish Shah   Umesh Nagori 


Security testing of the web application is most critical and demand of automated web application auditing tools is increasing day by day. From last few years, web applications are getting too complex and rich, and automated web application testing tools are facing many changelings like obfuscation of response code, java script based form submission, custom error pages, etc. In this presentation, we’ll talk about how entire web technology evolves from web 1.0 to 2.0, what are the traditional methods of web application analysis, what techniques web applications developers use to defeat automated tool and what techniques automated tools use to penetrate web applications. We’ll also speak about web 2.0 architecture; automated testing methodology for web 2.0 applications, challenges and limitations.