About PTS
What Is PTS?
PTS simulates the attack and vulnerability discovery techniques that hackers might use to conduct in-depth probing of a target system's security and identify its most vulnerable points.
Is Penetration Testing Equivalent to System Intrusion?
No. The key difference between penetration testing and malicious hacking lies in the fact that penetration testing is conducted with user authorization. It employs controlled, non-destructive methods and techniques to discover vulnerabilities in target systems and network devices, thereby helping administrators understand the security issues their networks face.
What Risks Does Penetration Testing Pose to Business Systems?
During testing, many foreseeable and unforeseeable risks inevitably arise. Therefore, the implementation team provides mitigation measures before testing to prevent significant impact on the system, such as:
Conduct tests on a test system whenever possible, rather than directly on a production system.
Communicate and confirm risky testing actions with the business system owner before implementation.
Avoid conducting tests during peak business hours.
Immediately stop testing and restore the system promptly when an abnormal condition occurs during the testing process.
Does PTS Cause Sensitive Data Leakage?
No. Before the Tencent Cloud PTS is implemented, a non-disclosure agreement is signed. The equipment and information used by security personnel are strictly controlled to ensure that user data is kept strictly confidential.
Does Tencent Cloud Support Patching Vulnerabilities Discovered by PTS?
Relevant support is provided. Upon completion of the penetration test, a professional test report is generated and delivered to the user. Remediation suggestions are provided to the user in the report. If vulnerabilities are still found to exist in the end, Tencent Cloud also provides manual Q&A support to assist the user in patching the vulnerabilities.
What Is the Typical Duration of a Penetration Test?
The overall duration of a penetration test varies depending on the application type, such as Web, App, or binary files, and the number of features. Typically, the testing cycle for a single application does not exceed 10 days.
What Preparations Are Required Before a Penetration Test Is Conducted?
Understand the user's system network architecture.
Clarify the user's network security posture.
Confirm the penetration target.
Ask the user whether they have performed an information backup.
Select penetration testing tools.
Select the time for the penetration test.
Have the user sign the penetration testing authorization form.
Does PTS Support On-Site Implementation?
Yes. Tencent Cloud PTS is typically implemented on-site for private networks and can be implemented remotely for public networks. If the user requests on-site implementation, it can also be performed on-site, but the price will increase accordingly.
What Applications Does PTS Primarily Test?
PTS (Penetration Test Service) can be used to test Web application systems and apps on iOS and Android platforms.
Does PTS Provide Vulnerability Retesting?
PTS (Penetration Test Service) provides one free regression test for vulnerabilities discovered in the same application version, helping users verify whether the vulnerabilities have been fixed.
How to Ensure User Information Is Not Leaked
Tencent Cloud has a comprehensive information security service and protection system.
Before Tencent Cloud PTS is implemented, obtain the user's authorization document and sign a non-disclosure agreement.
For internal system security, deploy security devices at key egress points to detect confidentiality capabilities in terms of traffic, files, known behaviors, and unknown behaviors.
All personnel involved in external services have signed labor contracts with the company.
Does Penetration Testing Pose Risks? Does It Impact Business System Operations?
Penetration testing does involve certain operational risks. However, the design intent of a formal testing process is to discover security issues while minimizing business impact. Tencent Cloud PTS has corresponding risk prevention measures. In terms of scheduling, tests are arranged during off-peak hours to avoid any impact on business system continuity.
Can PTS Be Replaced by VSS?
The breadth and depth of penetration testing cannot be covered by vulnerability scanning. Penetration testing can discover business logic vulnerabilities that are not addressed by vulnerability scanning, as well as high-complexity vulnerability exploits such as secondary injection.
In addition to identifying vulnerabilities, PTS also attempts to exploit them, escalate privileges, and maintain control over the target system. In contrast, vulnerability scanning clearly reveals all defects present in the system but does not assess the impact these defects have on the system.
What User Cooperation Is Required for Tencent Cloud PTS?
The user needs to provide the scope for the penetration test.
User authorization is required for the penetration test.
Sometimes, the user needs to provide test accounts and have the security product add the test IP address to the allowlist.
Can Vulnerability Scanning Achieve Real-Time Monitoring?
Vulnerability scanning is different from real-time monitoring.
Vulnerability scanning can perform periodic scans to promptly detect new vulnerabilities and alert users for remediation.
About MSS
What Is MSS?
MSS provides you with continuous and efficient security monitoring and operational management services. It enables rapid response to various security risk events involving security products for hosts, networks, applications, and data. By leveraging SOAR technology, it intelligently categorizes and efficiently handles these events. Furthermore, it conducts continuous risk surveillance and leak monitoring for your cloud assets. Additionally, it provides an emergency duty team for round-the-clock security protection, thereby enhancing your operational efficiency.
What Security Capabilities Does MSS Have?
MSS provides capabilities such as security assessment, risk detection, vulnerability awareness and risk monitoring, security monitoring, risk handling, and emergency response, covering all key stages of security operations.
What Security Events Does MSS Primarily Analyze?
MSS primarily analyzes events from security products, security policy configuration events, security vulnerability events, data leak events, and more.
Are There Conditional Restrictions for MSS?
Because the security monitoring service within MSS involves analyzing security alarms and attack events in your business environment, you need to have basic security detection and protection products (such as CWPP and WAF) to obtain these events, enabling their in-depth analysis.
How Is MSS Billed?
Tencent Cloud MSS uses a prepaid model and charges based on a tiered pricing structure. For details, see MSS Billing Overview. What Service Guarantees Are Provided After Purchase?
After service purchase, the Tencent Cloud MSS service team will immediately initiate background security event analysis, periodically output overall security risk service reports, and deliver the customer service content as committed in the SLA agreement.
If you encounter any issues, the MSS service team will provide support and answers.
Can MSS Provide Personalized Services Based on User Requirements?
Security Operations Managed Service currently offers standardized service content. If you have specific requirements, you can contact the MSS service team for an additional purchase. The service team will then conduct focused operational monitoring based on your specific concerns.