Most Recent Post

#2 What is Penetration testing?Method of Penetration testing...

Hello friend this is Subhash Chandra and welcome in hacking series tutorial ,In a previous Artical we are considered about hacking ,hackers and career.

techchiefpoint

What is Penetration Testing?

Penetration testing or Pen-testing is a security measure that companies undertake to protect themselves against malicious cyber-attacks.Generally,a White hack hacker is hired to run simulated attacked on the system or network to find out potential loopholes or security lapses in the system that is susceptible to exploitation.Restrictions are virtually absent because the most important objective is to uncover as many security flaws as possible.
Let's discuss these three types of penetration testing prevalent in the industry.


Black Box: 

The infrastructural information about the organization's network is Kept hidden from the ethical hacker.Similar to a black-box,the hacker is on his own to figure out everything. This is done to simulate a completely external attack by someone who has never physically been is an organization,nor do they know anything about the way it functions.


White Box:

The hacker is given all necessary information about infrastructure and network of the organization .This simulates an insider with access trying to attack the organization's data from within. It's a lot airier to identify bugs when source codes are made available ,and also can flag security holes that can be misused from within  the company's employees.
Pen testing also has its caveats. It can leave the system malfunctioning or something cause data loss. The company also has to balance the risk of exposing its entire infrastructure to the pen-tester.


Grey Box:

The ethical Hacker during a grey box pen test,is provided with partial information about the network framwork. In this case the simulation is for low level internal threats,and is useful to identify holes exposed to someone with even basic access to information about the working of the company.

Comments