← Security+ glossary

Vulnerability management

Penetration testing pentest

An authorized simulated attack in which an ethical hacker actively tries to exploit vulnerabilities in order to demonstrate their real impact and how far an attacker could get. The phases usually include planning, reconnaissance, scanning, exploitation, maintaining access and reporting, with the report being the most valuable because it gives concrete recommendations for remediation.

All Security+ guides →

Related terms

Get CertOwl on the App Store

Free download · A+ and Network+ completely free
+ daily lessons, flashcards and full exam simulations