Penetration Testing
Penetration testing = simulated attack
Resistance of your systems against unauthorized access is best approved by penetration tests performed by highly qualified experts with long-time experience.
DCIT puts stress on manual phase of penetration tests based on experiences and combination capability of our experts, which cannot be replaced by any tool, thus we can make maximally authentic simulation of real hacker attack.
External penetration test
External penetration test simulates attack against customer’s internal systems from an outside area, i.e. consultant simulates potential attacker (hacker) to penetrate from the Internet. Test is based on information, gained from public internet databases, IP ranges or other information specified by customer’s experts.
Internal penetration test
In internal penetration test DCIT consultant simulates common privileged user (worker), connected to customer’s internal network with effort to gain unauthorized access to confidential information. This type of test practically check out company’s internal security mechanisms, where the task to achieve is to restrict unauthorized access or abuse of internal information on the part of users, which may happen knowingly (e.g. sensitive data getting for unfair operation) or unintentionally (e.g. information system implementation error).
Other penetration tests variants
In adition to penetration tests described above there are some other types:
- WWW application penetration tests
- WiFi network penetration tests
- Denial of service tests
- Social engineering penetration tests