Abstract
Software testing is a fundamental process of software development since it ensures the superior quality of the software products developed and that they are delivered without defects and with the required functionality. As software applications become increasingly integral to business operations and everyday life, the proliferation of cyber threats poses significant threats that can compromise data integrity, user privacy, and overall system functionality. This study investigates common cybersecurity threats, including SQL injection, cross-site scripting, and vulnerabilities associated with third-party libraries, by analyzing data collected from surveys with industry professionals alongside a review of existing literature. The study's findings reveal a critical gap between awareness of cybersecurity threats and the effective implementation of security practices within the testing lifecycle. While many organizations recognize the importance of cybersecurity, there is often a lack of structured methodologies to incorporate security testing alongside functional testing. The paper identifies key factors influencing the successful integration of security measures, including organizational culture, resource allocation, and the use of automated testing tools. This paper proposes a framework by using an online questionnaire survey to enhance cybersecurity resilience during software testing, emphasizing best practices such as threat modeling, continuous security integration, and the adoption of DevSecOps methodologies. This framework aims to foster a proactive security mindset among development and testing teams, ensuring that security is not an afterthought but an integral component of the software development lifecycle. By shedding light on the current state of cybersecurity in software testing and offering actionable insights for practitioners, this research contributes to the growing body of knowledge in the field. The paper ultimately aims to promote safer digital environments by equipping organizations with the necessary tools and strategies to mitigate cybersecurity threats in their software applications effectively.
Author supplied keywords
Cite
CITATION STYLE
Al Hashimi, H. A. (2025). An Empirical Exploration of Cybersecurity Threats and Mitigation Strategies in Software Testing. In 2025 14th International Conference on Software and Computer Applications, ICSCA 2025 (pp. 96–106). Association for Computing Machinery, Inc. https://doi.org/10.1145/3731806.3731851
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.