Vulnerability Scanning
Vulnerability Scanning is an automated process of known vulnerabilities discovery and enumeration. Today the largest number of hacker’s attacks involves exploitation of vulnerabilities that are publicly available. Hundreds of security scanners and tools, designed to check if your system is vulnerable to a list of known vulnerabilities, are available in the Internet for free. One can easily find automated software to compromise a system with existent and unpatched vulnerability.During vulnerability scanning High-Tech Bridge security experts use public and commercial vulnerability scanners and assessment tools. Choice of the scanning software depends on client’s infrastructure and needs. High-Tech Bridge proprietary tools, based on the latest and efficient algorithms of vulnerabilities enumeration, are used to complete the scan.
Since vulnerabilities are identified, the next step is to assign an appropriate risk-level and priority to each. This process is called Vulnerability Assessment.
Vulnerability Scanning is the simplest Ethical Hacking service, suitable for needs of small- and medium-size companies. However vulnerability scan is performed by automated software, which can obviously make some mistakes and find non-existing vulnerabilities (false-positive errors) as well as miss some existing vulnerabilities (false-negative errors). Therefore vulnerability scan is a good start point to evaluate the state of IT security in general, however it is not a complete solution. Penetration Test should be the next step, and if performed correctly, it assures the highest level of security.



