Security Basics mailing list archives

Re: Re: which is next step after using tools in penetration testing?


From: dan.crowley () gmail com
Date: Thu, 5 Mar 2009 08:52:33 -0700

After using automated vulnerability scanners, a good penetration testing team should perform manual testing on the 
system at hand to find vulnerabilities which are not publicly known.

That's what makes it a pen test and not a vulnerability scan. It takes human ingenuity and skill. After you finish the 
part that's automated, you do the reconnaissance and write/launch the attacks cannot be automated.

"One machine can do the work of fifty ordinary men. No machine can do the work of an extraordinary man."


Current thread: