Hi,

I would highly recommend @STAKE in Boston. They have a great reputation,
and they employ some of the best security people in the world (Dr.
Mudge, among others). When they break into your systems, they will give
you a full report of how they did it, and how to fix it. They will also
do code review, process review, etc.

FYI,
Kenny
 
On Tue, 2002-07-09 at 10:00, [EMAIL PROTECTED] wrote:
> 
> Hi all,
> 
> Does anyone have any experience working with companies who do 
> penetration testing, code review, and general security audits for 
> products?
> 
> At my current place of employment we have a product which we would 
> like to have reviewed and tested by an outside party.  However, the 
> only company mentioned was ISS, who, if you remember were the folks 
> responsible for the Apache fiasco a month or so back.
> 
> If anyone has any recommendations, please let me know.
> 
> Thanks
> 
> 
> -- 
> 
> Seeya,
> Paul
> ----
>       It may look like I'm just sitting here doing nothing,
>    but I'm really actively waiting for all my problems to go away.
> 
>        If you're not having fun, you're not doing it right!
> 
> 
> 
> *****************************************************************
> To unsubscribe from this list, send mail to [EMAIL PROTECTED]
> with the text 'unsubscribe gnhlug' in the message body.
> *****************************************************************
-- 
----------------------------------------------------------------------------
"Tact is just *not* saying true stuff" -- Cordelia Chase

Kenneth E. Lussier
Sr. Systems Administrator
Zuken, USA
PGP KeyID CB254DD0 
http://pgp.mit.edu:11371/pks/lookup?op=get&search=0xCB254DD0



*****************************************************************
To unsubscribe from this list, send mail to [EMAIL PROTECTED]
with the text 'unsubscribe gnhlug' in the message body.
*****************************************************************

Reply via email to