Penetration Test
The Penetration Testing activity, generally consequential to that of the Vulnerability Assessment, consists in the attempt to “test” the dangerousness of the vulnerabilities first identified against a company’s IT systems, with the aim of assessing whether it is possible or not to perform unauthorized access or other illegal activities (such as, for example, theft or deletion / destruction of data).
It is desirable that VA&PT activities are carried out periodically, in order to determine the level of vulnerability of the network components exposed to the public and to ensure that the defence measures are adequate in identifying and contrasting all possible illegal actions