Towards Islamic ethics in professional penetration testing

Frequent technological advances in the field of computing have resulted in a rapid increase in creation of new loopholes in systems. To secure their computing systems, big companies resort to use penetration testing as a solution whereby an external company is hired to evaluate the security of the...

Full description

Saved in:
Bibliographic Details
Main Author: Habaebi, Mohamed Hadi
Format: Article
Language:English
Published: Revelation and Science, IIUM 2013
Subjects:
Online Access:http://irep.iium.edu.my/33801/1/97-363-1-PB.pdf
http://irep.iium.edu.my/33801/
http://www.iium.edu.my/revival/index.php
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Frequent technological advances in the field of computing have resulted in a rapid increase in creation of new loopholes in systems. To secure their computing systems, big companies resort to use penetration testing as a solution whereby an external company is hired to evaluate the security of the computer system or network under perspective. There are many Muslim professionals who have an effective role in many stages of the penetration testing process and have access to vital technical information about many companies. Failing to secure the critical information or a misuse may result in acute data leak. Reason demands that these professionals understand the ethics involved and implement them skillfully and understand that ethics holds a high place in Islam. This paper highlights the key ethical steps and presents issues arising in a modern penetration testing background. Then, it relates traditional ethical principles to a solution attempting to resolve the problems using the framework of Islamic ethical values; which are derived from the Holy Qur’an and Sunnah and provide a high standard of ethics on all levels for Muslims. Keywords: Network Security, Penetration Testing, Social Ethics