Stories
Slash Boxes
Comments

SoylentNews is people

posted by Fnord666 on Friday September 20 2019, @07:55AM   Printer-friendly
from the just-doing-my-job dept.

The document showed that the state authorized Coalfire's team to "perform lock-picking activities to attempt to gain access to locked areas." But the document also stated the testers should "talk your way into areas" and allowed for "limited physical bypass."

The rules of engagement also dictated that the state authorities said they would not notify law enforcement of the penetration test.

[...] At 12:30am on the morning of September 11, penetration testers Justin Wynn and Gary Demercurio were caught with lock picks inside the Dallas County courthouse by Dallas County Sherriff's Department officers. They presented documents showing they had authorization from the state; the officers contacted state officials on the document, who verified that the test was authorized. But they arrested Wynn and Demurcurio anyway and charged them with burglary.

Wynn and Demurcurio are free on bail and have waived an initial hearing. They still face charges, despite state officials' apology to county officials.

Related: https://soylentnews.org/article.pl?sid=19/09/17/0641246

Coalfire's Comments:https://www.coalfire.com/News-and-Events/Press-Releases/Coalfire-Comments-on-Pen-Tests-for-Iowa-Judicial

https://arstechnica.com/information-technology/2019/09/iowa-officials-claim-confusion-over-scope-led-to-arrest-of-pen-testers/


Original Submission

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: -1, Offtopic) by Anonymous Coward on Friday September 20 2019, @02:40PM

    by Anonymous Coward on Friday September 20 2019, @02:40PM (#896505)

    I found something unusual in a Windows programs .ini file... My personal email address and logon credentials. The thing that confused me is that the (well known) program was registered with my other email address. I went to Windows forums and asked why, and immediately got banned from them. I asked the same question on the programs help forum and it got deleted.
    Don't trust Windows. Ever.

    Starting Score:    0  points
    Moderation   -1  
       Offtopic=1, Total=1
    Extra 'Offtopic' Modifier   0  

    Total Score:   -1