
By Peter Stephenson
Excerpt:
"Finally, we tested each protected system with the Core Impact utility from Core Security. This utility allowed us to send directed buffer overflow attacks against the target application. Once again, on completion of the test we waited for SLA time to elapse or until we were contacted by the provider. The nmap scan was considered a low level event, the Nessus and WebInspect scans were medium level events, and the Core Impact testing was considered the high level scanning."
Source: SC Magazine











