官术网_书友最值得收藏!

Stages of an application pentest

It is trivial to understand the stages of an application pentest as it lays the groundwork and ensures that the pentester covers all the possible endpoints and does an efficient scan. A web application pentest is broadly categorized in the following stages:

  • Planning and reconnaissance
  • Client end code analysis
  • Manual testing 
  • Automated testing
  • Exploiting discovered issues 
  • Digging deep for data exfiltration
  •  Taking shells
  • Reporting

Among these stages, the planning and reconnaissance stage is the most important stage, as there are possibilities that a tester might miss out critical entry endpoints into the application, and those areas might go untested. Let's explore in a little more detail what happens in each stage.

主站蜘蛛池模板: 安康市| 留坝县| 昭通市| 交口县| 洪雅县| 玉门市| 双柏县| 新蔡县| 宜君县| 江西省| 鲁山县| 宁武县| 蒙自县| 南雄市| 留坝县| 体育| 本溪| 汝南县| 佳木斯市| 隆子县| 樟树市| 苏尼特右旗| 磐安县| 伊吾县| 琼海市| 冷水江市| 隆德县| 麟游县| 大关县| 五原县| 文水县| 孟村| 苏尼特右旗| 林甸县| 达拉特旗| 睢宁县| 陈巴尔虎旗| 武平县| 呼玛县| 襄垣县| 波密县|