CISSP · Free practice question 7 of 12
Misuse case testing of abuse scenarios
Before launching a gift card feature, Beacon Coffee's test team writes scenarios describing how a dishonest user might try to redeem one card twice or create value from nothing, and then tests the application against them. What type of testing is this?
- A.Usability testing
- B.Misuse case testing
- C.Regression testing
- D.Smoke testing
Show answer and explanation
Correct answer: B. Misuse case testing
Why: Misuse case, or abuse case, testing models how an attacker or dishonest user might deliberately abuse functionality and then verifies that the application resists those actions. Regression testing checks that changes have not broken existing features, smoke testing is a quick check that a build basically works, and usability testing evaluates how easy the feature is for legitimate users.
More free CISSP questions
- Senior management ultimate security accountability
- Wassenaar Arrangement export of cryptography
- Brewer-Nash model prevents conflicts of interest
- Known-plaintext cryptanalytic attack
- Air-gapped network physical segmentation
- Role-based access control by job function
- Breach and attack simulation platforms
- Proactive hypothesis-driven threat hunting
- Lessons learned after incident closure
- Access control vestibule stops tailgating
- Cold site characteristics and recovery time