The Application Security domain encompasses the controls included within systems and application software, as well as the steps used in their development.
This domain is covered in Chapter 7. Major topics include
Application issues
Databases and data warehousing
Data and information storage
Knowledge-based systems
Systems development controls
Malicious code
Methods of attack