IP Tools
Network Tools
White Papers
Open Forum
|
Our procedures are, at face value, very straight forward.
|
For attacks on systems coming from the outside, under 'Black-Box' conditions:
|
Primarily we dig around the internet on various services to discover which systems
you run, which operating systems and applications the network runs.
|
We test to see how stringent your local security policy is, mostly via Social
Engineering.
|
We look to see if there is another point of entry to your network, other than via
the internet, such as wireless access to your systems, or remote access dial-ups.
| After we have an overview of the systems, we find where the vunerabilities lie,
and (at your choice and in a non-destructive way) exploit them, as proof, to gain
access to either internal systems or data.
|
We then issue a report (and/or presentation) to show where the weaknesses in the
system are, with our recommendations to strengthen your system and guidelines to
keep the system secure.
|
Please note as we are ethical hackers, all information that we
have access to is strictly to prove we have done the job properly, and you, the
client, must first authorise us to do the work, and sign legal documentation. Our work
can harvest passwords to your systems as well as others, which we will also need legal
authorisation for.
|
|
|