What is the difference between a vulnerability scan and a penetration test?

A vulnerability scan is automated and detects known weaknesses without exploiting them. A PASSI penetration test is led by qualified consultants who exploit flaws like a real attacker, chain attack vectors and measure tangible impact. The pentest answers the question: “How far can an attacker actually go?”.