NetsPWN: Assessment Services

Penetration Testing – Deception through Vocabulary

View all posts by Alex Crittenden

Alex Crittenden

April 24, 2012

I’ve also discovered that non-security executives often seem to think that a pen test is a pen test is a pen test and while this certainly isn’t the case (there is real skill involved in effective penetration testing, as well as the need for a solid process), what’s really frustrating is that it’s often the situation that what people call a pen test is actually a vulnerability assessment or a scan and that drives me nuts.
READ POST

NetsPWN: Assessment Services

The Vulnerability Disappearing (and Reappearing) Act

View all posts by abacchus

abacchus

February 9, 2011

As vulnerability assessments continue from quarter to quarter, some vulnerabilities seem to appear, disappear, and reappear again. Some appear that were never seen before, despite the fact the affected software has been in use for over a year.
READ POST

NetsPWN: Assessment Services

Application Security-An Introductory Post

View all posts by Paul Johnson

Paul Johnson

July 15, 2009

NetSPI is embarking on an initiative to provide opinions and insight to security practitioners in the form of periodic blog entries covering four specific subject areas, one of which is Application Security. Entries in this blog category will be providedby members of NetSPI’s Application Security team and will [...]
READ POST