Category: Penetration Test Blog

  • How long does it take to compete a web application penetration test?

    How long does it take to compete a web application penetration test?

    Average time to complete a web application penetration test from Black Hat Pen-Test is 1-4 days with larger enterprise applications taking 5 days or more. However, the specifics matter, frameworks, components, input fields, user-roles are all specifics that can influence the testing duration. These items add complexity and take time to perform scanning, analysis, and…

    Know More

  • Why you should choose another penetration testing firm.

    Why you should choose another penetration testing firm.

    I’ll tell you 3 reasons why choosing a different penetration testing firm is important. If you choose another firm for penetration testing, you will potentially get a new attack style, a new format for the report, and a totally new perspective on the threat surface of your organization. Depending on the penetration testing firm, you…

    Know More

  • How penetration testing can stop a similar Uber situation.

    There is no magic wand when it comes to security. No one process or product can stop every attack. I always explain that security in layers is the best approach. When thinking of your security defense tactics, security in layers is the best approach. And always remember, security is never a set it, and forget…

    Know More

  • Should I perform a penetration test every month?

    This is a common question among larger organizations and organizations that are serious about improving their security, but is it excessive? The answer is; it depends… To one organization, it may be that a penetration test every month is sufficient as they have very mature security controls in place and the penetration testing is a…

    Know More

  • Should I penetration test a WordPress site?

    Yes, absolutely. And I’ll explain 3 reasons why you should always penetration test a WordPress site. WordPress sites may not have extensive functionality, but may hold information internally that an attacker would use to aid further attacks on an organization including names, email addresses, and in some case passwords that may be re-used across the…

    Know More

  • What is the cost of an average penetration test?

    If you have landed here, you’re trying to find out what the cost of an average penetration test is; but it’s not exactly simple and I’ll explain. The scope of the penetration test is what drives cost, along with the penetration testing organization that’s doing the work. The same exact test can be between $6,000-$60,000…

    Know More

  • What is a penetration test attack narrative?

    What is a penetration test attack narrative?

    Does your penetration test report include an attack narrative?

    Know More

  • What else can you do besides a yearly penetration test?

    What else can you do besides a yearly penetration test?

    You can do other things to reveal the true threat surface across systems

    Know More