Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 71 guests and 1 member online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow EH-Netarrow Special Eventsarrow [Article]-Webcast: Modern Social Engineering - A Vital Component of Pen Testing
EH-Net
May 18, 2013, 08:02:42 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: 1 2 [3]   Go Down
  Print  
Author Topic: [Article]-Webcast: Modern Social Engineering - A Vital Component of Pen Testing  (Read 36768 times)
0 Members and 1 Guest are viewing this topic.
mmurray
Newbie
*
Offline Offline

Posts: 17



View Profile WWW
« Reply #30 on: March 16, 2009, 07:30:02 PM »

I'm late to the party, but I just couldn't help throw a few more thoughts into here.


Q: On a PenTest team, what is the best way to collaborate what you have found? I pentest and I have found that communication break down is one of the biggest problems within the PT team social context.
.....

#3 P0wned list. Mae a secured Wiki, have a shared doc..  or use collaboration frameworks to take notes for juicy intel and info. Review this list with the whole team daily for large projects and  every half day for smaller gigs.


For this function, I'd suggest checking out Dradis.  http://dradis.nomejortu.com/

It's a work in progress, but at Foreground we've already started testing it and we're thinking about putting it in production.


#4 Leverage traditional PM skills

Since traditional pen-tests aren't highly complex projects, you don't need a full-scale PM.  Here's where a student intern can really help out - I'm a big fan of finding someone in a local college who is looking to become a project manager... they can learn to PM, track data, track progress, etc.  And you get a resource appropriate for the level required. 

Depends on the project, of course. 
Logged

--
Mike Murray
MAD Security / The Hacker Academy

Email - mmurray@thehackeracademy.com
Phone - 773-360-0658
Twitter: http://www.twitter.com/mmurray
Pages: 1 2 [3]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.068 seconds with 22 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.