We perform Code Reviews as a part of our Whitebox Testing Model. We extensively cover the following 10 pointers:
- Database Security
- File Management
- Input Validation
- Authentication and Password Management
- Session Management
- Access Control
- Cryptographic Practices
- Error Handling and Logging
- System Configuration
- Usage of passwords in source code