Desktop Application Pentest Requirements
🔴 Required (Must Provide)
- The app itself or written instructions for acquiring it
- If the app is nested in a 3rd party service, a specific list of what is in scope is needed. Everything else will be ignored | Required
- If remote connection is needed to access the app, written instructions for establishing connectivity | Required
✅ Examples of ways to connect include Anydesk, RDP, TeamViewer, Tailscale, etc.
⭐ Optional but recommended
-
Authentication layers and credentials at each layer
- Credentials for at least one layer of authentication | Required
-
Pre-loaded dummy data where applicable
-
Source Code for static review