Subscribe the QA and Software Testing Newsletter FREE!! Comments Feed

Penetration Testing Software

Friday, May 23, 2008
Post Your Queries | Table of Contents | Subscribe to Testing Newsletter Reading: Penetration Testing SoftwareTweet this Post

SPONSORED LINKS

Penetration testing - Evaluating the security of a computer system or network by hacking. Basically, it is an analysis of system for any potential vulnerabilities that may result from any of the following:

  • Poor or improper system configuration
  • Known and / or unknown hardware or software flaws
  • Operational weaknesses in process
  • Technical countermeasures

In other words, we can say that it is the process of actively evaluating your information security measures.

Importance of Penetration Testing:

  • It prevents financial loss through from hackers or extortionists or disgruntled employees
  • It prevents financial loss through unreliable business systems and processes
  • From an operational perspective, penetration testing helps shape information security strategy.
  • It protects your brand by avoiding loss of consumer confidence and business reputation.

Below are some common areas that can be tested in Penetration Testing:

  • Telephony or remote access
  • Products such as operating systems, applications, databases, networking equipment etc.
  • Custom build dynamic web sites or in-house applications etc.
  • WIFI, Bluetooth, IR, GSM or any other wireless devices etc.Access control devices etc.



However, you do not need to test all of the above mentioned areas. Do a risk analysis to find the main threats.




Selecting Penetration Testing Software: Before you select Penetration Testing Software, you will need to identify the types of tests that are required. (As tests may vary from application to application).




Example of Penetration Testing Software which is good to use for varity of penetration tests is DevPartner Studio Professional Edition. It is an award-winning suite of software development and testing tools that enable Windows application teams to build reliable, high-performance applications, components and web services for Microsoft .NET and native Windows platforms. You can download it from below URL:




http://www.compuware.com/products/devpartner/studio.htm




If you would like to use some third party Software Testing Services for penetration testing, below are some important points that you need to remember while selecting the vendor:

  • Eliminate the supplier who provided the systems that will be tested.
  • Is security assessment their core business?
  • How long have they been providing penetration testing software services?
  • Do they offer a range of services that can be tailored to your specific needs?
  • Do they perform their own research?
  • How experienced are the proposed testing team and do they hold professional certifications?
  • Are they recognised good contributors within the penetration testing software services?
  • What is their policy on information security and confidentiality?
  • Are they ready to do a legal agreement that will protect you from negligence on behalf of the supplier?

Also See:

SPONSORED LINKS

Search this site - within more than 167 pages of Software Testing

Do not want to miss any Software Testing tips and latest updates? Subscribe the Software Testing Newsletter and get effective software testing tips


Powered by FeedBlitz
Reading: Penetration Testing SoftwareTweet this Post

0 Responses to Penetration Testing Software

Search within more than 167 pages


Subscribe to our updates


Powered by FeedBlitz

Software Testing Stuff on FaceBook

Follow Software Testing Stuff on Twitter Subscribe Software Testing & QA Pages Through RSS

Blog Archive

Categories

Automation Concepts

Basic concepts of

Software Test

Automation

Basics

Software Testing articles and

tutorials for Beginners

Bugzilla

Bugzilla - one of the best

open source defect tracking

system

CSTE

Know about CSTE and

related question papers

Defects Bugs and Errors

What are defects,

bugs and errors

General

General software testing

articles for every

software professional

Integration Testing

Learn all about Integration

Testing

Interview Questions

Set of interview questions

for Manual Testing, QTP,

LoadRunner,

Rational Functional Tester,

Selenium

ISEB Certification

Practice exams for ISEB

software testing exam

ISTQB

Preparing for ISTQB???

Then, this is for you.

Job Openings

Find out job openings

for Software Testing

LoadRunner

Learn LoadRunner from

these tutorials

QTP

QTP tutorials for

everyone

QTP Certification Papers

Practice exams for

HP QTP certification

Rational Tools

Learn Rational Tools

from these tutorials

Selenium

Here, you will find

Selenium Tool's

related tutorials

Test Director and Quality Center

Tutorials on Test Director

and Quality Center

Test Management

Learn Software

Test Management,

Planning from

these tutorials

Testing Types and Strategies

Tutorials on various

testing types and

test strategies

Tool Installation

Find help on installation

of various software

testing tools

Unit and White Box Testing

Learn unit testing

and white box testing