Should you retest after fixing the findings?
Fixing the issues in your report is the goal — but it is worth confirming that the fixes actually did the job.
Retesting matters because:
- A fix can be incomplete — closing one input while leaving a similar one open, for example.
- A change made to fix one thing can occasionally introduce something new.
- On a live site, findings you thought were resolved sometimes reappear after later updates.
A follow-up penetration test after remediation gives you confidence that the vulnerabilities are genuinely closed rather than assumed closed. As a general habit it is also worth retesting periodically and after any significant change to the site, since new code and new components bring new risk. If you would like a fresh assessment once your fixes are in place, just order another test.

0 comments
Sign in with your TDesk account to comment.