In this chapter, we learned about security testing toolkits. Based on the elements that are to be tested, there are Kali Linux, BlackArch, and PentestBox, which are the Linux security distributions that provide general security testing toolkits. As there are many tools, we suggested a minimum set of security tools to cover the white box review, web connection, vulnerability, and network security.
We also showed the key factors of security automation tools and compared the capabilities of some web security tools for supporting the CLI and REST API interfaces. The BDD Security framework was also introduced for the support of an automated framework. We looked at BDD Security, MITTN, and GauntIT.
Some other security testing tools were also discussed. For Android security testing, MobSF (Mobile Security Framework) was recommended for a quick-win, fully automated analysis platform...