Penetrationtesting.edited.docx

Running head: PENETRATION TESTING

PENETRATION TESTING

Student name:

Professor:

Course:

Date:

The network service test penetration test identifies vulnerabilities and gaps in the user's network system. The tester targets various network areas such as stateful analysis, firewall configuration, firewall bypass, IPS deception, and DNS level attacks. It helps identify and solve the vulnerabilities and weaknesses of your system (Messier, 2016). It also provides important details about your network. Errors are costly in automated attack testing. One is also expected to trust the tester to be cautious and have integrity.

The web application test is detailed and intense. It allows one to investigate data breaches to discover the source of data theft (Messier, 2016). It helps promote a proactive security system. In this testing, one is at risk of getting a false sense of security and exposing confidential data to unethical hackers.

The client-side test is aimed at identifying security threats that emerge locally. It builds trust with the organization's clientele (Messier, 2016). It also helps one to identify one identify and fix hardware and software flaws that exploit security vulnerabilities. Some vulnerabilities may be hard to find hence not solved. Unrealistic tests result in misleading feedback.

Wireless network test analyzes the wireless devices used on the client’s site. It helps gather information and learn about systems that are tested (Messier, 2016). It helps one identify patterns by exploring small vulnerabilities, for example, configuring wireless devices protocols. It is costly, labor-intensive, and if not done properly, it can crash the server.

Social engineering tests aim at verifying the human network of a company. It allows for realistic testing of an organization, its policies, and procedures. It also ensures one can evaluate and validate your system defense techniques (Messier, 2016). It is time-consuming, and the test could be termed unethical, for example, phishing.

Negative implications of penetration testing include; breakage of the system due to recklessness, inexperience, and unpredicted circumstance. There may be accidental exposure of private and sensitive information, which may be a vulnerability (Messier, 2016). Alerts of attack may be assumed due to an ongoing penetration test. The productivity of the employees may be interfered with during a test.

References

Messier, R. (2016). undefined. Penetration Testing Basics, 1-11.  https://doi.org/10.1007/978-1-4842-1857-0_1

Mohit. (2015). Python penetration testing essentials. Packt Publishing.

Weidman, G. (2014). Penetration testing: A hands-on introduction to hacking. No Starch Press.

Messier, R. (2016). What is penetration testing? Penetration Testing Basics, 1-11.  https://doi.org/10.1007/978-1-4842-1857-0_1