Re: Pen Test mistake

From: Jonathan Rickman (jonathan@xcorps.net)
Date: Thu Aug 21 2003 - 15:24:39 EDT


On Thursday 21 August 2003 00:47, Jeff Johnson wrote:

> How do you handle this situation?

Honestly, I am so paranoid about this that I have always used firewall rules
(either on the pen-test machine, or a separate device) to ensure that I
stay "on target."

> Anyone else have any better advice?

Consult an attorney before initiating contact with the accidental victim.

-- 
Jonathan Rickman
X Corps Security
http://www.xcorps.net
---------------------------------------------------------------------------
Attend Black Hat Briefings & Training Federal, September 29-30 (Training), October 1-2 (Briefings) in Tysons Corner, VA; the world<92>s premier 
technical IT security event.  Modeled after the famous Black Hat event in 
Las Vegas! 6 tracks, 12 training sessions, top speakers and sponsors.  
Symanetc is the Diamond sponsor.  Early-bird registration ends September 6 Visit: www.blackhat.com
----------------------------------------------------------------------------


This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:53:38 EDT