Desktop Application Pentest Requirement
🔴 Required (Must Provide):
- The app itself or written instructions for acquiring it.
- If the app is nested in a 3rd party service, a specific list of what is in scope is needed. Everything else will be ignored
- If remote connection is needed to access the app, written instructions for establishing connectivity.
- Examples of ways to connect include Anydesk, RDP, TeamViewer, Tailscale, etc.
- Credentials for at least one layer of authentication
⭐ Optional but recommended:
- Authentication layers and credentials at each layer
- Pre-loaded dummy data where applicable
- Source Code for static review