.

Physical Penetration Testing Framework/Checklist

<<

ras76

User avatar

Newbie
Newbie

Posts: 15

Joined: Wed Mar 27, 2013 9:48 am

Post Wed Jun 19, 2013 10:02 am

Physical Penetration Testing Framework/Checklist

Have any of you ever been involved in physical penetration testing/assessments of data centres? I wondered if you had a framework for testing the physical security of the data centres? And perhaps any common weak spots you've found during such engagements over the years? You'd think any serious IT organisation would have physical security of their main data centre incredibly locked down, but you never know.

Many Thanks
<<

m0wgli

User avatar

Sr. Member
Sr. Member

Posts: 308

Joined: Fri Jul 20, 2012 3:34 pm

Post Thu Jun 20, 2013 2:34 pm

Re: Physical Penetration Testing Framework/Checklist

The SANS institute has a Data Center Physical Security Checklist.
Security + | OSWP | eCPPT (Silver & Gold) | CSTA
<<

cd1zz

User avatar

Recruiters
Recruiters

Posts: 566

Joined: Sun Oct 03, 2010 9:01 pm

Post Thu Jun 20, 2013 4:47 pm

Re: Physical Penetration Testing Framework/Checklist

All of my physical testing at data centers has been unsuccessful. They pretty much have the physical part figured out so the easy stuff wont work. The only time we had "some success" was when we used some pre texting with it. I had "momentary" access and then was quickly escorted out.

Return to Physical Security

Who is online

Users browsing this forum: No registered users and 1 guest

cron
.
Powered by phpBB® Forum Software © phpBB Group.
Designed by ST Software