ISC2 Certified Secure Software Lifecycle Professional (CSSLP) Practice Question
A development team is planning security tests for an industrial IoT gateway that will operate in harsh field conditions. You are asked to design a test that will determine the exact load level at which the device's embedded web service stops responding, so the team can document that failure point and add safeguards. Which approach BEST satisfies the goal of break testing for this component?
Use a hardware debugger to flip individual bits in RAM and verify the watchdog handler resets the device correctly.
Perform a dynamic application security (DAST) scan against the live service to check for OWASP Top 10 vulnerabilities.
Run the full unit-test suite with code-coverage instrumentation to ensure at least 90 percent branch coverage is achieved.
Progressively increase concurrent HTTP sessions against the web service until it stops responding and record the threshold.
Break testing purposely drives the system past normal operating limits until it actually fails, so the failure point can be identified and documented. Continuously raising the number of simultaneous sessions until the web service crashes is a direct example of that technique. Flipping bits in memory is fault-injection, branch-coverage measurement is a code-quality activity, and running a DAST scan seeks vulnerabilities without necessarily forcing a service failure; none of those specifically aim to discover the precise circumstances that make the service break.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is break testing in software security?
Open an interactive chat with Bash
How is break testing different from fault injection testing?
Open an interactive chat with Bash
Why not use a dynamic application security test (DAST) for reliability testing?
Open an interactive chat with Bash
ISC2 Certified Secure Software Lifecycle Professional (CSSLP)
Secure Software Testing
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .