The Nano IT Web Security Testing method is based on the black box approach. The tester knows nothing or has very little information about the application to be tested. Security testing will never be an exact science where a complete list of all possible issues that should be tested can be defined.
Indeed, security testing is only an appropriate technique for testing the security of web applications under certain circumstances. The goal of web application security testing is to collect all the possible vulnerabilities that threat the security of web applications.