NetSPI Imformation Security Consulting
NetSPI Blog
Security Industry

Hacking Twitter for Fun (and Profit?)

Recent high-profile Twitter hacks seem more about notoriety than terror but they still affect the public. Is this merely the case of another hacker group trying to make a name for itself or are we actually witnessing the convergence of cyber attacks and terror?

 
NetsPWN: Assessment Services

When Databases Attack – Finding Data on SQL Servers

In this blog I’ll provide a few scripts for finding sensitive data quickly in SQL Server. In the future I’ll provide scripts for other attacks as well.

 
PCI/PA-DSS Compliance

PCI 2.0 scoring matrix released to the public (now your kids can play “PCI Auditor” at home!)

With the release of the PCI 2.0 scoring matrix a company can actually evaluate their controls and compliance program against the same standards that a QSA will use…

 
Healthcare Compliance

HIPAA Privacy Audits – How Badly Am I Screwed?

What the Coming HHS Audits Mean for Your Healthcare System

 
Sage Advice

The Catch-22 of Policy Updates

Many companies have been in this dilemma before, “if I update and publish this new policy our organization is immediately out of compliance, but no one will make any changes without the policy.”