Email or username:

Password:

Forgot your password?
Top-level
noahm

@stefano Several years ago I encountered something similar. Got a notification from the security company that their internal scans had identified an insecure version of OpenSSH on the network. After a bit of poking, my team identified the host in question. It was the security company's OWN APPLIANCE.

We promptly turned the device off and stopped paying them.

2 comments
Andrew Zonenberg

@stefano @noahm Reminds me of the time I had a client's entire network go down because of a WAF/IDS that OOM'd due to buggy firmware while doing a pentest of a host behind it.

Go Up