Get the Whitepaper called Guidelines for Pen-testing a Joomla Based Site.
You can download it from the following link: https://packetstormsecurity.com/files/download/118169/pentesting-joomla.pdf
Source: https://packetstormsecurity.com/files/118169/Guidelines-For-Pen-Testing-A-Joomla-Based-Site.html