Seven Phrase Penetration Testing Model
Parvin Ami, Ashikali M. Hasan · International Journal of Computer Applications · 2012
Generally in penetration testing process a simple way to test a system is held by primary analysis and formal methods, Based on the observation that most security flaws are triggered due to a flawed interaction with the environment [12].Herein have describe an approach for testing web application and database integration system for possible security flaws.This approach is to be included in a dynamic model which have the aim to bind the complex and lengthy procedure of penetration testing process.Proposed approach is prepared a model using seven different Phases called as Seven Phase Penetration Testing Model (SPPT-Model).It simplifies the complex penetration testing procedure and allow penetration tester to evaluate accurately what faults to be exist in the target system.The dynamic model of penetration testing can be implementing freely and efficiently on almost all type of applications.This scheme can be used to classify informatics, analytical, complex, logical, well-known and common security flaws of web application.