<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/'><id>tag:blogger.com,1999:blog-8539880144347728238.post3487908245592721019..comments</id><updated>2009-03-24T05:58:45.837-04:00</updated><title type='text'>Comments on Carnal0wnage Blog: Observations on pen testing not in all those hacki...</title><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://carnal0wnage.blogspot.com/feeds/3487908245592721019/comments/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default'/><link rel='alternate' type='text/html' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html'/><author><name>CG</name><uri>http://www.blogger.com/profile/11061967917509053185</uri><email>noreply@blogger.com</email></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>3</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>25</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-3566286839789165742</id><published>2008-03-12T23:19:00.000-04:00</published><updated>2008-03-12T23:19:00.000-04:00</updated><title type='text'>Great post.  I can relate to this in many ways as ...</title><content type='html'>Great post.  I can relate to this in many ways as I have taken "heat" for outages during a pentest...not that I haven't taken anything down but I have been blamed for more that I didn't do.&lt;BR/&gt;&lt;BR/&gt;When I worked for a company that never had a network pentest before I contracted a third-party to do the work, the very management that hired these guys got crazy pissed when the third-party pwnd the entire Windows domain...then yelled at me for hiring them.  I left the company shortly after.  :)</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default/3566286839789165742'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default/3566286839789165742'/><link rel='alternate' type='text/html' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html?showComment=1205378340000#c3566286839789165742' title=''/><author><name>Tom</name><uri>http://spylogic.net</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-3487908245592721019' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/3487908245592721019' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-376337690465135307</id><published>2008-03-11T14:36:00.000-04:00</published><updated>2008-03-11T14:36:00.000-04:00</updated><title type='text'>Vince, you make a good point -- it can be fun to m...</title><content type='html'>Vince, you make a good point -- it can be fun to make people look bad but it's not what we do.  Most people in organizations don't get that.  Most of our work is done to ensure that those people actually look better when they come to find that another company with a similar setup got hacked and they were already protected from it.&lt;BR/&gt;&lt;BR/&gt;People should always try to fight the battle upfront instead of trying to put out the fire after the fact.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default/376337690465135307'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default/376337690465135307'/><link rel='alternate' type='text/html' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html?showComment=1205260560000#c376337690465135307' title=''/><author><name>srcas</name><uri>http://srcasm.com</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-3487908245592721019' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/3487908245592721019' type='text/html'/></entry><entry><id>tag:blogger.com,1999:blog-8539880144347728238.post-1706752952655575588</id><published>2008-03-09T07:27:00.000-04:00</published><updated>2008-03-09T07:27:00.000-04:00</updated><title type='text'>Good post.  I would say that 100% of the time ther...</title><content type='html'>Good post.  I would say that 100% of the time there are "those" people in the organization that do not want you there and don't understand the reason you are actually there.  We are not here to make people look bad, although it is fun to do, we are here to help people make their shit better.  When we encounter people that act like jack asses we want to do the former.</content><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default/1706752952655575588'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/8539880144347728238/3487908245592721019/comments/default/1706752952655575588'/><link rel='alternate' type='text/html' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html?showComment=1205062020000#c1706752952655575588' title=''/><author><name>Vince</name><uri>http://www.blogger.com/profile/09556419908287937141</uri><email>noreply@blogger.com</email></author><thr:in-reply-to xmlns:thr='http://purl.org/syndication/thread/1.0' href='http://carnal0wnage.blogspot.com/2008/03/observations-on-pen-testing-not-in-all.html' ref='tag:blogger.com,1999:blog-8539880144347728238.post-3487908245592721019' source='http://www.blogger.com/feeds/8539880144347728238/posts/default/3487908245592721019' type='text/html'/></entry></feed>