The Cyber Security Review | Thursday, June 11, 2026
Penetration testing is essential to cybersecurity. Companies use tests to discover security flaws before they become significant problems. An enterprise can gain eye-opening insight into how well its cyber security measures stand against cyber-attacks.
FREMONT, CA: Penetration testing is gaining popularity. It adheres to the
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
philosophy of being able to think like your adversary to foresee where they would strike and their techniques. Instead of focusing just on defense against unanticipated attacks that could come from anywhere, a fresh perspective is required. Consider ways to infiltrate systems from the outside to identify their potential vulnerabilities.
The following are some penetration testing trends for storage sector specialists:
Audits of storage and backup systems
Historically, penetration testing generally ignored storage and backup systems.
Cybercriminals were more concerned with firewalls, endpoints, and the IT infrastructure's periphery. Back-end systems were, after all, invisible to attackers. That may have been true, but it no longer holds.
Yet, storage systems are frequently fraught with vulnerabilities, as few IT professionals give them much mind. According to a study by Continuity Software, storage systems often lack high-priority fixes. Hackers are now aware of this. They are increasingly gaining access by searching for storage and backup system vulnerabilities.
Leading auditors have begun to analyze the storage and backup security. Penetration testing of these systems is becoming more necessary for insurers as auditors put more pressure on them.
Mainframe security disregarding penetration testing
Mainframes still store a surprising amount of sensitive information.
Businesses like banking and telecommunications use these systems to process billions of daily transactions. Therefore, this information requires the utmost level of protection.
The long-held belief that mainframes are extremely secure. In recent years, this perspective has altered to recognize that mainframes must be secured similarly to other servers.
Regarding security, mainframe enterprises are frequently more reactive than proactive. There is a tendency for firms to fall behind on penetration testing because they are so preoccupied with other security emergencies.
The results of a recent mainframe study indicate that security and compliance are top concerns; nevertheless, the number of enterprises doing penetration testing has decreased compared to a year ago as companies prioritize enterprise-wide security prevention, detection, and inclusion.
This is especially worrisome given that 80 percent of respondents reported discovering insecure user accounts during security audits—a prominent target for bad actors to exploit and obtain access to critical data. Like any other server, Mainframes require frequent penetration testing to ensure that enterprises do not leave the keys to their most important data unprotected.
Routine penetration testing should be undertaken to determine where mainframes are susceptible to an attack and where further security measures are required.
More in News