Vulnerability testing

What’s a vulnerability test?
A vulnerability test assesses the adequacy of the level of protection inside the client computer system. It detects any intrusion or hacker, cracker or defacer attack.

What’s the aim of vulnerability test?
The test’s aim is that of detecting and signaling any leak of the security and protection system inside the client network.
Such leaks can be due both to some technical problems (operating systems, software, firewall firmware etc.) and to any internal organization problems (easy passwords, scarcely protected services).

Application method
First of all, the client computer networks are analyzed by a dedicated software in order to detect any possible security problem.
Our experts carry out then some targeted tasks in order to check the test reliability. In addition to this, after a careful analysis of the access possibilities to the remote system, some intrusion attempts are performed towards those areas that the earlier tests have shown vulnerable and more easily accessed.

Testing results
After the tests the client is given a report containing all the possible security problems detected. Such problems are divided as follows:
- False positive are those aspects the business consider to be insignificant but that reveal indeed a critical point for any computer attack;
-  Real security problems;
- Procedures that should be used to solve the detected security problems.

Security guarantees and Privacy policy
Tests are performed respecting the confidentiality of any client data Yarix handle during the check.
Once the client agree to the test, both Yarix and the enterprise fill in an authorization where the absolute safety of the test in relation to all the services and/or the products involved is attested (T.O.E.: Target of Evaluation according to ITSec).