EC-Council
EC0-350 · Question #265
When comparing the testing methodologies of Open Web Application Security Project (OWASP) and Open Source Security Testing Methodology Manual (OSSTMM) the main difference is
The correct answer is D. OSSTMM addresses controls and OWASP does not. See the full explanation below for the reasoning.
Question
When comparing the testing methodologies of Open Web Application Security Project (OWASP) and Open Source Security Testing Methodology Manual (OSSTMM) the main difference is
Options
- AOWASP is for web applications and OSSTMM does not include web applications.
- BOSSTMM is gray box testing and OWASP is black box testing.
- COWASP addresses controls and OSSTMM does not.
- DOSSTMM addresses controls and OWASP does not.
How the community answered
(26 responses)- A12% (3)
- B4% (1)
- C4% (1)
- D81% (21)
Community Discussion
No community discussion yet for this question.