Interactive Application Security Testingとは? わかりやすく解説

Weblio 辞書 > 辞書・百科事典 > 百科事典 > Interactive Application Security Testingの意味・解説 

Interactive Application Security Testing

出典: フリー百科事典『ウィキペディア(Wikipedia)』 (2026/01/20 03:00 UTC 版)

Interactive Application Security Testing(略称:IAST、インタラクティブ・アプリケーション・セキュリティ・テスティング、)[1]は、プログラムとの相互作用(インタラクション)に加え、観察とセンサーを組み合わせることでソフトウェアの脆弱性を検出するセキュリティテストの手法である[2][3]

このツールは、いくつかのアプリケーションセキュリティ企業によって立ち上げられた[4]。IASTは、プログラムと相互作用しないStatic Application Security Testing(SAST)や、プログラムをブラックボックスとして扱うDynamic Application Security Testing(DAST)とは異なるものである。これら両方の混合(ハイブリッド)と見なされることもある[5]

脚注

  1. ^ Mike Chapple; James Michael Stewart; Darril Gibson (2021). (ISC)2 CISSP Certified Information Systems Security Professional Official Study Guide. John Wiley & Sons. ISBN 978-1-119-78624-5. https://books.google.com/books?id=kSw0EAAAQBAJ&pg=PT1019 
  2. ^ OWASP DevSecOps Guideline - v-0.2 | OWASP Foundation”. Owasp.org. 2026年1月20日閲覧。
  3. ^ What is IAST: Interactive Application Security Testing”. www.softwaretestinghelp.com. 2026年1月20日閲覧。
  4. ^ Tanya Janca (2020). Alice and Bob Learn Application Security. John Wiley & Sons. pp. 140–. ISBN 978-1-119-68735-1. https://books.google.com/books?id=6AoBEAAAQBAJ&pg=PA140 
  5. ^ Aaron Walker (2019年8月14日). “SAST vs. DAST: Application Security Testing Explained”. www.g2.com. 2022年7月20日時点のオリジナルよりアーカイブ。2026年1月20日閲覧。

関連項目




英和和英テキスト翻訳

英語⇒日本語日本語⇒英語
  •  Interactive Application Security Testingのページへのリンク

辞書ショートカット

すべての辞書の索引

「Interactive Application Security Testing」の関連用語

Interactive Application Security Testingのお隣キーワード
検索ランキング

   

英語⇒日本語
日本語⇒英語
   



Interactive Application Security Testingのページの著作権

   
ウィキペディアウィキペディア
All text is available under the terms of the GNU Free Documentation License.
この記事は、ウィキペディアのInteractive Application Security Testing (改訂履歴)の記事を複製、再配布したものにあたり、GNU Free Documentation Licenseというライセンスの下で提供されています。 Weblio辞書に掲載されているウィキペディアの記事も、全てGNU Free Documentation Licenseの元に提供されております。

©2026 GRAS Group, Inc.RSS