RE: Penetration Testing - Human Factor

From: Evans, Arian (Arian.Evans@fishnetsecurity.com)
Date: Thu Aug 24 2006 - 15:49:30 EDT


 

> -----Original Message-----
> From: Marios A. Spinthiras [mailto:mario@netway.com.cy]
>
> Arian how have you concluded that no evidence has been gathered?

It was a skeptical joke. Nothing more,

> I do not know how serious you consider social engineering to be

Not my problem domain, and it has nothing to do with "true" hacking
IMO. "True hacking" is purely technical, no SE at all (in my book).
And I see a lot of it, in the real world, causing real damage.

So is SE serious? Sure. I've seen it work too.

I have not run into many examples of SE in the wild, causing real
harm, unless you count occasional "team building" experiences or
the "sales training" they once made me go through.

This does not mean I'm denying it is real or significant; I am
telling you the other stuff is just as real too, 'cause that's
what I deal with. That's all.

Trust me, I believe SE exists; it's the only way I get girls to
go out with me.

The software for the brain is pretty complex, though, so I try
to stick to the simpler computer stuff.

-ae

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php
------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:56:48 EDT