Blue Team ROE
- From: mesenbrink@xxxxxxxxxxx
- Date: 1 Mar 2007 19:45:18 -0000
List,
I wanted to send out a general email asking the members of this list their professional opinions on being limited during a Blue Team pen-test. I have a govt customer that is trying deny us the ability to remove password hashes/files from the system for cracking, write procedures for every tool/exploit that could be possibly executed, not allow the loading of any tools/exploits on target systems, things like that..... Of course my reaction is that my company will not perform the assessment with such restrictions, what are some thoughts from this list on this subject?
------------------------------------------------------------------------
This List Sponsored by: Cenzic
Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------
- Follow-Ups:
- RE: Blue Team ROE
- From: Angelacci, Anna M CTR SPAWAR, J616
- RE: Blue Team ROE
- From: Dave Sanford
- RE: Blue Team ROE
- From: Dexter, Ben
- RE: Blue Team ROE
- Prev by Date: RE: Good Pentesting checklist
- Next by Date: Re: Good Pentesting checklist
- Previous by thread: Penetration Testing within the UK
- Next by thread: RE: Blue Team ROE
- Index(es):
Relevant Pages
|