Penetration Testing
Penetration Testing
What is the Penetration Test?
It is the process of identifying security vulnerabilities with cyber attacks and interventions using methods that anticipate the attack of a malicious person (hacker) on the network infrastructures, hardware, software and applications that make up the companies' information systems, and simulating the attempts to infiltrate the system with these vulnerabilities and reporting all these transactions.
During the process, our penetration testers act like a hacker and reveal all the vulnerabilities, risks and accessibility of various systems. In these security tests, there are many different methods and variables, so they must be performed by experts.
It is also called pentest in short.
Types of Penetration Tests
There are three types, White Box, Black Box and Gray Box.
White Box Penetration Testing
Penetration test specialist is informed by authorized persons within the company and has information about all systems about the company. In this method, the damages that may be caused to the systems by those who have been in the company before, are still working or join the network later as guests are simulated and reported.
Black Box Penetration Testing
In this method, no information is shared with the company performing the penetration test, only the target systems are specified. By pretending to be a hacker trying to infiltrate information or cause various damages, damages that may be caused to systems are simulated and reported.
Grey Box Penetration Testing
We can define it as a test that includes the White Box and Black Box tests, that is, both internally and externally. In addition to the Gray Box, infiltration checks are performed with low powers.
Our Penetration Testing Services
- System and Network Penetration Testing
- Web Application/API/Service Penetration Testing
- Mobile Application Penetration Testing
- DoS/DDoS Testing
- Social Engineering and Phishing/APT Testing
- ICS/SCADA Penetration Testing