Back to category

Week 5

Conduct an External Network Penetration Test

Advanced
Penetration Tester
MITRE ATT&CK
OWASP
Penetration Testing
Reconnaissance
Vulnerability Exploitation

Client Background

A healthcare provider has requested an authorized external penetration test of its internet-facing infrastructure ahead of a client security audit. Simulate real-world attacker reconnaissance and exploitation attempts against externally exposed assets, staying within the agreed rules of engagement.

Business Environment

Meridian Health Network operates 14 clinics across two states, with an internet-facing patient portal, a VPN concentrator for remote clinicians, and several legacy billing APIs hosted on-prem. A six-person IT team supports ~2,000 employees and partners, with a third-party SaaS handling the EHR.

Security Incident

No breach has occurred; this is an authorized, proactive external penetration test. The trigger was a new regional insurer data-sharing partner rejecting the network's security questionnaire for 'no current penetration test on file,' risking contract suspension before its renewal deadline.

Scope

External-facing IP ranges and web-facing services within the authorized rules of engagement.

Objectives

  • Perform reconnaissance and enumeration of external-facing assets
  • Identify exploitable vulnerabilities on exposed services
  • Attempt safe, authorized exploitation to validate findings
  • Document findings and business risk in a penetration test report

Required Deliverables

External Penetration Test Report
3 hrs estimated