SlideShare a Scribd company logo
1 of 5
Download to read offline
Quality Assurance
for a Blockchain
-based solution
Disrupting the Podcast
Industry
Cygnet Infotech
+1-609-245-0971
inquiry@cygnetinfotech.com
www.cygnetinfotech.com
The client is functionally unique
disrupting the podcast industry
with exclusive offerings for the
marketplace with campaign
management. Their global
blockchain-based electronic
marketplace is focused on
providing transparent bidding
and campaign execution for the
entertainment industry.
Cygnet designed blockchain and
AI-based solution for the client’s
62,000+ Podcasters, 100+
Network Administrators, 50,000+
Advertisers, 20,000+ Ad-Agencies
and a dedicated team to
participate in business decisions
for Podcasting.
CLIENT PROFILE
The client wanted enterprise-wide automation
of processes for quick, seamless and faster
execution of their Blockchain and AI-based
solutions. They also wanted to reduce the
payment cycle duration while securely
automating the campaign and marketplace
flow.
The application needed to be robust and high
performing while being totally secure from
cyber threats.
BUSINESS REQUIREMENT
Our QA project managers had extensive
meetings with the client’s team to understand
their objectives, long term strategy, challenges
and needs to decide the right set of testing
techniques, the requirement traceability and
the overall planning, designing and execution
of the phases to high performing deliverables.
The team also evaluated the performance
criteria for Blockchain testing.
The team began a series of thorough testing
rounds organized for Performance testing,
Load testing, Stress testing and API testing to
assess the performance capability of the
web-based solution.
CYGNET’S SOLUTION
End-to-End testing was planned and
required tools and techniques were
identified. All browsers on the desktop
for Mac/Windows OS were covered.
Site responsiveness on a mobile device
was also accessed. The scope of
regression tests for Sprint cycles was
decided based on business-critical
features and complete regression was
carried out before production.
FUNCTIONAL TESTING
Basic smoke testing scripts were automated, and full regression automation was carried out. As a part
of continuous integration, these automated tests are integrated in the deployment pipeline.
AUTOMATION TESTING
The client wanted the solution to be secure from all types of cyber-attacks. The application is
intended to be used by hundreds of public users in the podcasting domain. It was vital that it
was hack-proof and secure. We identified more than 60 security hacks on the final build and
helped the development team to fix them before Go-Live.
60 DIFFERENT TYPES OF ATTACKS TO DIFFERENT SECURITY THREATS, MAINLY AS BELOW;
BELOW SOLUTIONS WERE IMPLEMENTED AS A RESULT OF SECURITY TESTING;
• Path traversal
• Remote file inclusion
• Server-side inclusion
• CSS attack, SQL injection
• Remote OS command Injection
• Server-side code injection
• Directory browsing
• External redirect
• Buffer Overflow
• Format string error
• CRLF Injection
• Parameter Tampering
• Script Active scan rules
• Source code disclosure
• Anti CSRF token scanner
• Heartbleed OpenSSL
• Integer Overflow
• Potential denial-of-service
if block gas limit is reached
• Cross-domain misconfiguration
• Session fixation
• XPATH Injection
• XML external entity attack
• Backup file disclosure
• Integer overflow
• Insecure HTTP methods
• Cookie slack detector
• Information leak
• Proxy disclosure
• Relative Path confusion
• Denial of services
• Cloud metadata exposure
• LDAP injection
• Possible username enumeration
• Exception State
• External Call To Fixed Address
SECURITY TESTING
An in-depth functional and security testing
of smart contracts was carried out.
Network topology, negative cases,
response times, from blockchain nodes
were primarily assessed.
This helped us deliver a secure, scalable
and interoperable, high performing
functional blockchain-based solution.
BLOCKCHAIN TESTING
The client wanted to make sure that 200
concurrent application users do not suffer
due to performance lag. Being a
blockchain-based solution, it was also
essential to measure block confirmation
time on the blockchain server.
PERFORMANCE TESTING
• CORS Policy
• Request Throttling
• Date Pattern validation
• Header Parameter validation
• HTTPS encryption
• URL Validation
• Code disclosure prevention
TOOLS AND TECHNOLOGIES (TESTING TOOLS)
BUSINESS BENEFITS
• Reduced payment testing processing up to
60%
• End-to-end functional testing assured the
quality of features delivered for the product
• Security tests helped to identify security
loopholes on the web platform
• The development team fixed the threats, and
this gave confidence to the client that the
solution delivered was secure
• Performance testing identified opportunities
for code optimization
• Blockchain-based vulnerabilities were
detected including ownership, multiple calls
in a single transaction and gas limit
• Testing approach helped enhance application
performance
OWASP ZAP SELENIUM
TestNG
Cygnet Infotech is one of the most trusted names in the IT
space delivering technology solutions to global clients
across 35 countries. Born out of a vision to create software
development company where quality, innovation and
personalized services trump low cost, makeshift solution,
Cygnet partners with its client to help them transform into
high performance businesses.
Cygnet has deep industry and business process expertise,
global resources and a proven track record in delivering
innovative technology solutions. Cygnet can mobilize the
right people, skills and technologies that improves business
performance.
ABOUT CYGNET
CONTACT US
USA
Cygnet Infotech LLC.
125 Village Boulevard,
Suite 315, Princeton,
NJ 08540
+1-609-245-0971
+1-609-533-8393
INDIA
Cygnet Infotech Pvt. Ltd.
16-Swastik Society,
Nr. AMCO Bank, Stadium Circle,
Navrangpura, Ahmedabad 380009
+91-79-67124000
UK
Cygnet Infotech Ltd.
Devonshire House
60 Goswell Road, London,
United Kingdom, EC1M 7AD
+44-20-8099-1653
DUBAI
Cygnet Fintech Software
Unit 807, Ubora Tower 2,
Business Bay, Dubai,
UAE, PO Box No.: 418360
+971 52 830 5127
Copyright © 2019 Cygnet Infotech | www.cygnet-infotech.com
inquiry@cygnetinfotech.com
Our 100% Agile
Approach
Creates Value
We Have 1000+
Technology
Enthusiasts
Working with
Global Brands
We Have Delivered
2000+ Enterprise-
Class Solutions &
Products
We Are
"Technology First"
Company
We Help Clients to
Digitize, Scale and
Transform into
High-Performance
Business
We Have Deep
Industry and
Process
Knowledge
I

More Related Content

What's hot

State of the Web
State of the WebState of the Web
State of the WebCASCouncil
 
Using hypervisor and container technology to increase datacenter security pos...
Using hypervisor and container technology to increase datacenter security pos...Using hypervisor and container technology to increase datacenter security pos...
Using hypervisor and container technology to increase datacenter security pos...Tim Mackey
 
Zerotrusting serverless applications protecting microservices using secure d...
Zerotrusting serverless applications  protecting microservices using secure d...Zerotrusting serverless applications  protecting microservices using secure d...
Zerotrusting serverless applications protecting microservices using secure d...Trupti Shiralkar, CISSP
 
Common crypto attacks and secure implementations
Common crypto attacks and secure implementationsCommon crypto attacks and secure implementations
Common crypto attacks and secure implementationsTrupti Shiralkar, CISSP
 
F5 GOV Round Table - Application Centeric Security
F5 GOV Round Table - Application Centeric SecurityF5 GOV Round Table - Application Centeric Security
F5 GOV Round Table - Application Centeric SecurityTzoori Tamam
 
apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...
apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...
apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...apidays
 
OIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation Update
OIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation UpdateOIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation Update
OIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation UpdateOpenIDFoundation
 
Minimizing Dwell Time On Networks In IR With Tapio
Minimizing Dwell Time On Networks In IR With TapioMinimizing Dwell Time On Networks In IR With Tapio
Minimizing Dwell Time On Networks In IR With TapioInvincea, Inc.
 
Network security-primer-9544
Network security-primer-9544Network security-primer-9544
Network security-primer-9544Hfz Mushtaq
 
SDN and Security: A Marriage Made in Heaven. Or Not.
SDN and Security: A Marriage Made in Heaven. Or Not.SDN and Security: A Marriage Made in Heaven. Or Not.
SDN and Security: A Marriage Made in Heaven. Or Not.Priyanka Aash
 
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...Cisco Canada
 
DEVNET-1190 Targeted Threat (APT) Defense for Hosted Applications
DEVNET-1190	Targeted Threat (APT) Defense for Hosted ApplicationsDEVNET-1190	Targeted Threat (APT) Defense for Hosted Applications
DEVNET-1190 Targeted Threat (APT) Defense for Hosted ApplicationsCisco DevNet
 
ATT&CKING Containers in The Cloud
ATT&CKING Containers in The CloudATT&CKING Containers in The Cloud
ATT&CKING Containers in The CloudMITRE ATT&CK
 
Secure application deployment in the age of continuous delivery
Secure application deployment in the age of continuous deliverySecure application deployment in the age of continuous delivery
Secure application deployment in the age of continuous deliveryTim Mackey
 
API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...
API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...
API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...Veronique Wagon
 
(SACON) M T Karunakaran  - Quantum safe Networks
(SACON) M T Karunakaran  - Quantum safe Networks(SACON) M T Karunakaran  - Quantum safe Networks
(SACON) M T Karunakaran  - Quantum safe NetworksPriyanka Aash
 
F5 EMEA Webinar Oct'15: http2 how to ease the transition
F5 EMEA Webinar Oct'15: http2 how to ease the transitionF5 EMEA Webinar Oct'15: http2 how to ease the transition
F5 EMEA Webinar Oct'15: http2 how to ease the transitionDmitry Tikhovich
 

What's hot (20)

State of the Web
State of the WebState of the Web
State of the Web
 
Using hypervisor and container technology to increase datacenter security pos...
Using hypervisor and container technology to increase datacenter security pos...Using hypervisor and container technology to increase datacenter security pos...
Using hypervisor and container technology to increase datacenter security pos...
 
Zerotrusting serverless applications protecting microservices using secure d...
Zerotrusting serverless applications  protecting microservices using secure d...Zerotrusting serverless applications  protecting microservices using secure d...
Zerotrusting serverless applications protecting microservices using secure d...
 
Common crypto attacks and secure implementations
Common crypto attacks and secure implementationsCommon crypto attacks and secure implementations
Common crypto attacks and secure implementations
 
F5 GOV Round Table - Application Centeric Security
F5 GOV Round Table - Application Centeric SecurityF5 GOV Round Table - Application Centeric Security
F5 GOV Round Table - Application Centeric Security
 
apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...
apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...
apidays LIVE New York 2021 - OWASP cautions against “insufficient logging & m...
 
OIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation Update
OIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation UpdateOIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation Update
OIDF Workshop at Verizon Media -- 9/30/2019 -- OpenID Connect Federation Update
 
Minimizing Dwell Time On Networks In IR With Tapio
Minimizing Dwell Time On Networks In IR With TapioMinimizing Dwell Time On Networks In IR With Tapio
Minimizing Dwell Time On Networks In IR With Tapio
 
Network security-primer-9544
Network security-primer-9544Network security-primer-9544
Network security-primer-9544
 
Novinky F5
Novinky F5Novinky F5
Novinky F5
 
F5 Cloud Story
F5 Cloud StoryF5 Cloud Story
F5 Cloud Story
 
SDN and Security: A Marriage Made in Heaven. Or Not.
SDN and Security: A Marriage Made in Heaven. Or Not.SDN and Security: A Marriage Made in Heaven. Or Not.
SDN and Security: A Marriage Made in Heaven. Or Not.
 
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
Cisco Connect Toronto 2017 - Cloud and On Premises Collaboration Security Exp...
 
DEVNET-1190 Targeted Threat (APT) Defense for Hosted Applications
DEVNET-1190	Targeted Threat (APT) Defense for Hosted ApplicationsDEVNET-1190	Targeted Threat (APT) Defense for Hosted Applications
DEVNET-1190 Targeted Threat (APT) Defense for Hosted Applications
 
ATT&CKING Containers in The Cloud
ATT&CKING Containers in The CloudATT&CKING Containers in The Cloud
ATT&CKING Containers in The Cloud
 
Secure application deployment in the age of continuous delivery
Secure application deployment in the age of continuous deliverySecure application deployment in the age of continuous delivery
Secure application deployment in the age of continuous delivery
 
API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...
API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...
API Days, Paris, January 2018 - Sharing API Economy Observations: Business dr...
 
(SACON) M T Karunakaran  - Quantum safe Networks
(SACON) M T Karunakaran  - Quantum safe Networks(SACON) M T Karunakaran  - Quantum safe Networks
(SACON) M T Karunakaran  - Quantum safe Networks
 
F5 EMEA Webinar Oct'15: http2 how to ease the transition
F5 EMEA Webinar Oct'15: http2 how to ease the transitionF5 EMEA Webinar Oct'15: http2 how to ease the transition
F5 EMEA Webinar Oct'15: http2 how to ease the transition
 
Open Source in Application Security
Open Source in Application SecurityOpen Source in Application Security
Open Source in Application Security
 

Similar to Quality assurance-for-a-blockchain-based-solution

ChainDigit your partner for blockchain solutions
ChainDigit   your partner for blockchain solutionsChainDigit   your partner for blockchain solutions
ChainDigit your partner for blockchain solutionsBaiju Jacob
 
Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...
Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...
Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...Zeeve
 
Security architecture best practices for saas applications
Security architecture best practices for saas applicationsSecurity architecture best practices for saas applications
Security architecture best practices for saas applicationskanimozhin
 
The quality assurance checklist for progressive testing
The quality assurance checklist for progressive testingThe quality assurance checklist for progressive testing
The quality assurance checklist for progressive testingMaitrikpaida
 
The Quality Assurance Checklist for Progressive Testing
The Quality Assurance Checklist for Progressive TestingThe Quality Assurance Checklist for Progressive Testing
The Quality Assurance Checklist for Progressive TestingCygnet Infotech
 
Scalar Security Roadshow: Toronto Presentation - April 15, 2015
Scalar Security Roadshow: Toronto Presentation - April 15, 2015Scalar Security Roadshow: Toronto Presentation - April 15, 2015
Scalar Security Roadshow: Toronto Presentation - April 15, 2015Scalar Decisions
 
Codafication – Insurtech Innovation Award 2024
Codafication – Insurtech Innovation Award 2024Codafication – Insurtech Innovation Award 2024
Codafication – Insurtech Innovation Award 2024The Digital Insurer
 
Best Digital Transformation Company Toronto
Best Digital Transformation Company TorontoBest Digital Transformation Company Toronto
Best Digital Transformation Company TorontoVilroTechnologies
 
Web Design Company in Toronto
Web Design Company in TorontoWeb Design Company in Toronto
Web Design Company in TorontoVilroTechnologies
 
Top Digital Transformation Company Toronto
Top Digital Transformation Company TorontoTop Digital Transformation Company Toronto
Top Digital Transformation Company TorontoVilroTechnologies
 
Digital Transformation Strategy Services
Digital Transformation Strategy ServicesDigital Transformation Strategy Services
Digital Transformation Strategy ServicesVilroTechnologies
 
Digital Transformation Strategy Services
Digital Transformation Strategy ServicesDigital Transformation Strategy Services
Digital Transformation Strategy ServicesVilroTechnologies
 
The Best Cyber Security Company in Toronto
The Best Cyber Security Company in TorontoThe Best Cyber Security Company in Toronto
The Best Cyber Security Company in TorontoVilroTechnologies
 
Android & IOS App Development Toronto
Android & IOS App Development TorontoAndroid & IOS App Development Toronto
Android & IOS App Development TorontoVilroTechnologies
 
Top Blockchain Development Company Toronto
Top Blockchain Development Company TorontoTop Blockchain Development Company Toronto
Top Blockchain Development Company TorontoVilroTechnologies
 
70% Improvement in Service and Product Delivery on Implementing DevOps
70% Improvement in Service and Product Delivery on Implementing DevOps70% Improvement in Service and Product Delivery on Implementing DevOps
70% Improvement in Service and Product Delivery on Implementing DevOpsCygnet Infotech
 

Similar to Quality assurance-for-a-blockchain-based-solution (20)

ChainDigit your partner for blockchain solutions
ChainDigit   your partner for blockchain solutionsChainDigit   your partner for blockchain solutions
ChainDigit your partner for blockchain solutions
 
Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...
Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...
Webinar-GBA Episode 7-Managing blockchain infrastructure for enterprise-grade...
 
Security architecture best practices for saas applications
Security architecture best practices for saas applicationsSecurity architecture best practices for saas applications
Security architecture best practices for saas applications
 
Engineation intro q3 2013
Engineation intro q3 2013Engineation intro q3 2013
Engineation intro q3 2013
 
Azr infotech services
Azr infotech servicesAzr infotech services
Azr infotech services
 
The quality assurance checklist for progressive testing
The quality assurance checklist for progressive testingThe quality assurance checklist for progressive testing
The quality assurance checklist for progressive testing
 
The Quality Assurance Checklist for Progressive Testing
The Quality Assurance Checklist for Progressive TestingThe Quality Assurance Checklist for Progressive Testing
The Quality Assurance Checklist for Progressive Testing
 
Scalar Security Roadshow: Toronto Presentation - April 15, 2015
Scalar Security Roadshow: Toronto Presentation - April 15, 2015Scalar Security Roadshow: Toronto Presentation - April 15, 2015
Scalar Security Roadshow: Toronto Presentation - April 15, 2015
 
Codafication – Insurtech Innovation Award 2024
Codafication – Insurtech Innovation Award 2024Codafication – Insurtech Innovation Award 2024
Codafication – Insurtech Innovation Award 2024
 
Best Software Development company india and Web marketing Company India
Best Software Development company india and Web marketing Company IndiaBest Software Development company india and Web marketing Company India
Best Software Development company india and Web marketing Company India
 
Best Digital Transformation Company Toronto
Best Digital Transformation Company TorontoBest Digital Transformation Company Toronto
Best Digital Transformation Company Toronto
 
Web Design Company in Toronto
Web Design Company in TorontoWeb Design Company in Toronto
Web Design Company in Toronto
 
Top Digital Transformation Company Toronto
Top Digital Transformation Company TorontoTop Digital Transformation Company Toronto
Top Digital Transformation Company Toronto
 
Digital Transformation Strategy Services
Digital Transformation Strategy ServicesDigital Transformation Strategy Services
Digital Transformation Strategy Services
 
Digital Transformation Strategy Services
Digital Transformation Strategy ServicesDigital Transformation Strategy Services
Digital Transformation Strategy Services
 
Web Design Company Toronto
Web Design Company TorontoWeb Design Company Toronto
Web Design Company Toronto
 
The Best Cyber Security Company in Toronto
The Best Cyber Security Company in TorontoThe Best Cyber Security Company in Toronto
The Best Cyber Security Company in Toronto
 
Android & IOS App Development Toronto
Android & IOS App Development TorontoAndroid & IOS App Development Toronto
Android & IOS App Development Toronto
 
Top Blockchain Development Company Toronto
Top Blockchain Development Company TorontoTop Blockchain Development Company Toronto
Top Blockchain Development Company Toronto
 
70% Improvement in Service and Product Delivery on Implementing DevOps
70% Improvement in Service and Product Delivery on Implementing DevOps70% Improvement in Service and Product Delivery on Implementing DevOps
70% Improvement in Service and Product Delivery on Implementing DevOps
 

More from Cygnet Infotech

How to modernize legacy application infrastructure?
How to modernize legacy application infrastructure?How to modernize legacy application infrastructure?
How to modernize legacy application infrastructure?Cygnet Infotech
 
60 improvement-in-medical-counseling-process
60 improvement-in-medical-counseling-process60 improvement-in-medical-counseling-process
60 improvement-in-medical-counseling-processCygnet Infotech
 
Podcasters and Advertisers Marketplace on Blockchain
Podcasters and Advertisers Marketplace on BlockchainPodcasters and Advertisers Marketplace on Blockchain
Podcasters and Advertisers Marketplace on BlockchainCygnet Infotech
 
Design thinking a creative way to problem solving
Design thinking a creative way to problem solvingDesign thinking a creative way to problem solving
Design thinking a creative way to problem solvingCygnet Infotech
 
How to build successful blocks of DevOps
How to build successful blocks of DevOpsHow to build successful blocks of DevOps
How to build successful blocks of DevOpsCygnet Infotech
 
2019 Software Testing Trends
2019 Software Testing Trends2019 Software Testing Trends
2019 Software Testing TrendsCygnet Infotech
 
Why it is important to adopt enterprise mobility trends now?
Why it is important to adopt enterprise mobility trends now?Why it is important to adopt enterprise mobility trends now?
Why it is important to adopt enterprise mobility trends now?Cygnet Infotech
 
TOP 2019 TECH TRENDS SHAKING UP THE MARKET
TOP 2019 TECH TRENDS SHAKING UP THE MARKETTOP 2019 TECH TRENDS SHAKING UP THE MARKET
TOP 2019 TECH TRENDS SHAKING UP THE MARKETCygnet Infotech
 
Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019
Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019
Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019Cygnet Infotech
 
Ultimate guide to understanding product engineering services
Ultimate guide to understanding product engineering servicesUltimate guide to understanding product engineering services
Ultimate guide to understanding product engineering servicesCygnet Infotech
 

More from Cygnet Infotech (10)

How to modernize legacy application infrastructure?
How to modernize legacy application infrastructure?How to modernize legacy application infrastructure?
How to modernize legacy application infrastructure?
 
60 improvement-in-medical-counseling-process
60 improvement-in-medical-counseling-process60 improvement-in-medical-counseling-process
60 improvement-in-medical-counseling-process
 
Podcasters and Advertisers Marketplace on Blockchain
Podcasters and Advertisers Marketplace on BlockchainPodcasters and Advertisers Marketplace on Blockchain
Podcasters and Advertisers Marketplace on Blockchain
 
Design thinking a creative way to problem solving
Design thinking a creative way to problem solvingDesign thinking a creative way to problem solving
Design thinking a creative way to problem solving
 
How to build successful blocks of DevOps
How to build successful blocks of DevOpsHow to build successful blocks of DevOps
How to build successful blocks of DevOps
 
2019 Software Testing Trends
2019 Software Testing Trends2019 Software Testing Trends
2019 Software Testing Trends
 
Why it is important to adopt enterprise mobility trends now?
Why it is important to adopt enterprise mobility trends now?Why it is important to adopt enterprise mobility trends now?
Why it is important to adopt enterprise mobility trends now?
 
TOP 2019 TECH TRENDS SHAKING UP THE MARKET
TOP 2019 TECH TRENDS SHAKING UP THE MARKETTOP 2019 TECH TRENDS SHAKING UP THE MARKET
TOP 2019 TECH TRENDS SHAKING UP THE MARKET
 
Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019
Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019
Optimistic about AI: Dr. Nilesh Modi At O2H Innovation Conference 2019
 
Ultimate guide to understanding product engineering services
Ultimate guide to understanding product engineering servicesUltimate guide to understanding product engineering services
Ultimate guide to understanding product engineering services
 

Recently uploaded

Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...apidays
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationMichael W. Hawkins
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Drew Madelung
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationRadu Cotescu
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsRoshan Dwivedi
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking MenDelhi Call girls
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slidespraypatel2
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘RTylerCroy
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityPrincipled Technologies
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure servicePooja Nehwal
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Allon Mureinik
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 

Recently uploaded (20)

Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
GenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day PresentationGenCyber Cyber Security Day Presentation
GenCyber Cyber Security Day Presentation
 
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
Strategies for Unlocking Knowledge Management in Microsoft 365 in the Copilot...
 
Scaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organizationScaling API-first – The story of a global engineering organization
Scaling API-first – The story of a global engineering organization
 
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live StreamsTop 5 Benefits OF Using Muvi Live Paywall For Live Streams
Top 5 Benefits OF Using Muvi Live Paywall For Live Streams
 
08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men08448380779 Call Girls In Friends Colony Women Seeking Men
08448380779 Call Girls In Friends Colony Women Seeking Men
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
Slack Application Development 101 Slides
Slack Application Development 101 SlidesSlack Application Development 101 Slides
Slack Application Development 101 Slides
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
🐬 The future of MySQL is Postgres 🐘
🐬  The future of MySQL is Postgres   🐘🐬  The future of MySQL is Postgres   🐘
🐬 The future of MySQL is Postgres 🐘
 
Boost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivityBoost PC performance: How more available memory can improve productivity
Boost PC performance: How more available memory can improve productivity
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 

Quality assurance-for-a-blockchain-based-solution

  • 1. Quality Assurance for a Blockchain -based solution Disrupting the Podcast Industry Cygnet Infotech +1-609-245-0971 inquiry@cygnetinfotech.com www.cygnetinfotech.com
  • 2. The client is functionally unique disrupting the podcast industry with exclusive offerings for the marketplace with campaign management. Their global blockchain-based electronic marketplace is focused on providing transparent bidding and campaign execution for the entertainment industry. Cygnet designed blockchain and AI-based solution for the client’s 62,000+ Podcasters, 100+ Network Administrators, 50,000+ Advertisers, 20,000+ Ad-Agencies and a dedicated team to participate in business decisions for Podcasting. CLIENT PROFILE The client wanted enterprise-wide automation of processes for quick, seamless and faster execution of their Blockchain and AI-based solutions. They also wanted to reduce the payment cycle duration while securely automating the campaign and marketplace flow. The application needed to be robust and high performing while being totally secure from cyber threats. BUSINESS REQUIREMENT Our QA project managers had extensive meetings with the client’s team to understand their objectives, long term strategy, challenges and needs to decide the right set of testing techniques, the requirement traceability and the overall planning, designing and execution of the phases to high performing deliverables. The team also evaluated the performance criteria for Blockchain testing. The team began a series of thorough testing rounds organized for Performance testing, Load testing, Stress testing and API testing to assess the performance capability of the web-based solution. CYGNET’S SOLUTION End-to-End testing was planned and required tools and techniques were identified. All browsers on the desktop for Mac/Windows OS were covered. Site responsiveness on a mobile device was also accessed. The scope of regression tests for Sprint cycles was decided based on business-critical features and complete regression was carried out before production. FUNCTIONAL TESTING
  • 3. Basic smoke testing scripts were automated, and full regression automation was carried out. As a part of continuous integration, these automated tests are integrated in the deployment pipeline. AUTOMATION TESTING The client wanted the solution to be secure from all types of cyber-attacks. The application is intended to be used by hundreds of public users in the podcasting domain. It was vital that it was hack-proof and secure. We identified more than 60 security hacks on the final build and helped the development team to fix them before Go-Live. 60 DIFFERENT TYPES OF ATTACKS TO DIFFERENT SECURITY THREATS, MAINLY AS BELOW; BELOW SOLUTIONS WERE IMPLEMENTED AS A RESULT OF SECURITY TESTING; • Path traversal • Remote file inclusion • Server-side inclusion • CSS attack, SQL injection • Remote OS command Injection • Server-side code injection • Directory browsing • External redirect • Buffer Overflow • Format string error • CRLF Injection • Parameter Tampering • Script Active scan rules • Source code disclosure • Anti CSRF token scanner • Heartbleed OpenSSL • Integer Overflow • Potential denial-of-service if block gas limit is reached • Cross-domain misconfiguration • Session fixation • XPATH Injection • XML external entity attack • Backup file disclosure • Integer overflow • Insecure HTTP methods • Cookie slack detector • Information leak • Proxy disclosure • Relative Path confusion • Denial of services • Cloud metadata exposure • LDAP injection • Possible username enumeration • Exception State • External Call To Fixed Address SECURITY TESTING An in-depth functional and security testing of smart contracts was carried out. Network topology, negative cases, response times, from blockchain nodes were primarily assessed. This helped us deliver a secure, scalable and interoperable, high performing functional blockchain-based solution. BLOCKCHAIN TESTING The client wanted to make sure that 200 concurrent application users do not suffer due to performance lag. Being a blockchain-based solution, it was also essential to measure block confirmation time on the blockchain server. PERFORMANCE TESTING • CORS Policy • Request Throttling • Date Pattern validation • Header Parameter validation • HTTPS encryption • URL Validation • Code disclosure prevention
  • 4. TOOLS AND TECHNOLOGIES (TESTING TOOLS) BUSINESS BENEFITS • Reduced payment testing processing up to 60% • End-to-end functional testing assured the quality of features delivered for the product • Security tests helped to identify security loopholes on the web platform • The development team fixed the threats, and this gave confidence to the client that the solution delivered was secure • Performance testing identified opportunities for code optimization • Blockchain-based vulnerabilities were detected including ownership, multiple calls in a single transaction and gas limit • Testing approach helped enhance application performance OWASP ZAP SELENIUM TestNG
  • 5. Cygnet Infotech is one of the most trusted names in the IT space delivering technology solutions to global clients across 35 countries. Born out of a vision to create software development company where quality, innovation and personalized services trump low cost, makeshift solution, Cygnet partners with its client to help them transform into high performance businesses. Cygnet has deep industry and business process expertise, global resources and a proven track record in delivering innovative technology solutions. Cygnet can mobilize the right people, skills and technologies that improves business performance. ABOUT CYGNET CONTACT US USA Cygnet Infotech LLC. 125 Village Boulevard, Suite 315, Princeton, NJ 08540 +1-609-245-0971 +1-609-533-8393 INDIA Cygnet Infotech Pvt. Ltd. 16-Swastik Society, Nr. AMCO Bank, Stadium Circle, Navrangpura, Ahmedabad 380009 +91-79-67124000 UK Cygnet Infotech Ltd. Devonshire House 60 Goswell Road, London, United Kingdom, EC1M 7AD +44-20-8099-1653 DUBAI Cygnet Fintech Software Unit 807, Ubora Tower 2, Business Bay, Dubai, UAE, PO Box No.: 418360 +971 52 830 5127 Copyright © 2019 Cygnet Infotech | www.cygnet-infotech.com inquiry@cygnetinfotech.com Our 100% Agile Approach Creates Value We Have 1000+ Technology Enthusiasts Working with Global Brands We Have Delivered 2000+ Enterprise- Class Solutions & Products We Are "Technology First" Company We Help Clients to Digitize, Scale and Transform into High-Performance Business We Have Deep Industry and Process Knowledge I