| |
|
|
Is your network secure? How do you know? The only way to know for sure how your network will perform under attack is to actually attack it. White Badger Group’s team of certified security experts will launch controlled attacks against your network and prepare a report detailing what holes were found, how they were exploited, how much of a threat they are, and suggestions on how to fix them.
Unlike some “penetration tests” performed by other security firms, White Badger Group will go as deep into your network as you want. This makes the test much more realistic, and provides a good deal more data about the real state of security throughout your network. In some cases, we will be unable to get beyond the network perimeter (a very good thing). Should this happen, we offer a variety of ways to continue the test via a secure tunnel, allowing us to bypass perimeter security without leaving any holes for attackers.
|
| |
|
|
How does a penetration test work?
A penetration test starts with a large amount of research. Any data about your company and employees we are able to find will then be used to more effectively plan and execute attacks on your network. The next step in the test is to scan and footprint the network. Once we have gathered an appropriate amount of data, we begin attacking your network using many of the same tools that malicious hackers use. All research, footprinting, and attacking will start in a very quiet way, growing louder and more aggressive as the test progresses. This allows us to gauge what kinds of attacks your network will block, and which it will allow. If, at any point, we are unable to break in, and have exhausted all reasonable methods for doing so, we will step past that layer and resume the test. By the end of the test, we will have collected enough information to prepare a report detailing everything we found, highlighting any points of concern, and how to improve your security.
Internal Penetration Testing
The goal of an Internal Penetration Test is to simulate an attack by someone inside the organization. This attacker could be anyone who has access to any building or network in your organization. Typically, an organization’s network is weakest on the inside, precisely where these attackers will be. White Badger Group’s security experts will carry out such an attack, mainly targeting access control systems, wireless networks, and, optionally, physical security. In the end, you will know how an attacker would exploit the systems in your organization.
External Penetration Testing
An External Penetration Test aims to simulate an attacker outside your organization, who is also usually in a remote location. Such attackers may be malicious hackers from a few miles away, or a few continents away. White Badger Group’s External Penetration Test is exactly like an internal penetration test, but starts outside your network. Once the perimeter is breached, the test continues just as if it started on the inside.
Custom Penetration Testing
If your needs are more specific than either of the above offerings, we would still like to help. White Badger Group will work with you to test a specific system or set of systems. A good example of this is a new installation of IDS/IPS systems. In order to be useful, they need to be tuned, and tuning these systems can be difficult. It’s even more difficult without controlled attack traffic to reference. White Badger Group can assist in this and many other situations. Contact us to see how we can help you.
|