Structuring a Penetration Test Report

Ángel Cortez
4 min readJan 13, 2022

So you spend your weekend finding vulnerabilities in a business’ website (which you of course have written legal permission to do so) and now you have to communicate your findings.

source: “https://fractionalciso.com/wp-content/uploads/2019/11/Vulnerability-Assessment-Report-cartoon.jpg

Let’s make a checklist for what you NEED to include in your report to give it real value to the business.

  • Executive Summary → Gives context to both technical and non technical staff that will…

--

--