jueves, 14 de agosto de 2008

Como es un verdadero pentest

Bueno el siguiente texto lo aye en un pdf que leo actualmente y pues es compeltamente sierto
Haci que niños comprendan lo que e sun verdadero pentest xP

We refer to the real penetration tests to describe complex real-like attacks not just automatic scan
based analysis capable of detecting just an existence of a potential, well known vulnerability. The
goal of real penetration tests is to show that combination of small mistakes in configuration of
firewall, network architecture and software implementation may lead not only to theoretical but
also to practical compromise of the whole infrastructure. The successful result of the penetration
test is usually the best way (and in some cases the only one) for proving that threats are serious
and security mechanisms require some improvements.