Tag: penetration test
-
Defining Penetration Testing
I have been fortunate enough to be working with a group of peers from the security industry over the past few months (since November 2010) on finally creating a solid definition of what a penetration testing is. It has been a topic that has been abused, cannibalized, and lowered to a level where we (as in…
-
Pentesters and businessman are doing it wrong
What we are doing wrong as a security services industry, what businesses are doing wrong when they engage us, and how to fix it
-
The realistic cost of a web application pen-test
So I was having some really interesting conversations over the last couple of days with some of the best people I know in the security industry (yeah, I’m looking at you guys…), and one topic came up on which we all agreed and shared mutual frustrations about: the ability to evaluate the quality of a…