Accueil > Sécurité > Audit > Penetration testing

PENETRATION TESTING

> OBJECTIVES

Measure the complete exposition of an infrastructure and/or a web application to the internet (including vulnerabilities).


> METHODOLOGY

This service uses the complete security approach of a customer's infrastructure towards the internet. It uses both automated and manual techniques to determine the security level of an internet presence point.

The following area are all covered by a penetration testing approach :

  • Network Surveying
  • Access Control Testing
  • System Services Identification
  • Document Grinding
  • Vulnerability Research and Verification
  • Routing
  • Intrusion Detection System Testing
  • Containment Measures Testing
  • Denial of Service Testing (optional)

Optionaly, web application or web services can also be tested. In this area, the logic of the application itself is tested :

  • Internet Application Testing
  • Password Cracking
  • Trusted Systems Testing

Those steps cover the entire scope of an internet presence point.


> BENEFITS

The customer has a complete view of its security regarding its internet presence.