A penetration test is an authorized, time-constrained cyberattack utilizing the same tactics, techniques, and procedures as an adversary might. The objective is to exploit the identified vulnerabilities to achieve a predefined goal, such as access to sensitive information, accounts, etc., and report the exploitation steps to strengthen the security posture and prevent cyberattacks by a malicious actor. Depending on the scope and perspective penetration tests are:
Our methodology is based on the NIST SP 800-115 Technical Guide to Information Security Testing and Assessment, and OWASP Testing Guide and consists of the following stages: