Our Software is good, we checked it; How NOT to Conduct a Penetration Test

Kevin's blog at Impacta is a blog I have recently come across and I recommend it.


How NOT to Conduct a Penetration Test: Recent Rises in a Disturbing Trend
http://blog.impactalabs.com/2008/12/09/how-not-to-conduct-a-penetration-test-recent-rises-in-a-disturbing-trend/


Do not hire Web-development companies to assess the security of your online presence, especially when they created that online presence!  That’s like:
  • Having students grade their own finals
  • Having baseball players test themselves for steroid use
  • Having a security assessment company design your Web site for you

 

What did you think of this article?




Trackbacks
  • No trackbacks exist for this post.
Comments
  • No comments exist for this post.
Leave a comment

Submitted comments are subject to moderation before being displayed.

 Name (required)

 Email (will not be published) (required)

Your comment is 0 characters limited to 3000 characters.