PTD/penetration_test_reporting.txt

22 lines
665 B
Plaintext

Tips
- Cover page with title, author, date and that it's confidential
- Table of Contents
- Summary of the penetration test
- Scope, origination ip addresses and tools used
- Management summary (for the non-technical)
- Remember to write the positive findings too (that's just too overlooked!)
- Vulnerability details (start with a legend, explain what is considered critical, high, etc.)
- Additional information
Table of Contents (Example)
1. Overview and scope
2. Management summary
3. Vulnerabilities
3.1 Legend
3.2 Critical vulnerabilities
3.3 High vulnerabilities
3.4 Medium vulnerabilities
3.5 Low vulnerabilities
4. Additional attachments, logs