Bitcoin Forum
November 10, 2024, 03:39:57 PM *
News: Latest Bitcoin Core release: 28.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Professional Penetration Tests  (Read 1355 times)
rapeghost (OP)
Sr. Member
****
Offline Offline

Activity: 419
Merit: 250



View Profile
August 19, 2014, 04:35:09 PM
 #1

Hello,

We are offering our professional penetration testing services. This is your chance to eliminate your company/site as the next: Mintpal, Mtgox, Bitcoinica, Bter, BTC-e, Poloniex, etc. (The list goes on and on, sadly.)

Everyone on the team (excluding the Jr. slaves^H^H^H^H^H^Hmembers) have been testing for 5+ years.

We can offer the following:

1. Web application testing
 - Framework testing
 - Remote application testing
    - Injection testing
    - Remote Command Exection
    - Information Disclosure
    - Session fixation vulnerabilities
    - Lots more.
 - Code Audit* (PHP, Perl, Ruby, JSP)
2. Infrastructure testing
 - Servers
 - Routing equipment
 - VoIP
 - VPN
3. Denial of Service testing ( Dangerous! )

* Code audit is generally not billed the same way as regular pen-tests. Pen-tests are completed with a time limit. Code audit generally requires more time and will be billed accordingly based on the complexity, language, and size of the program.

The above list is just an example/rough list of things offered. Please do not hesitate to contact us and see what we can do for you.
---------------------------

I feel it is necessary to state the following:

A Penetration Test is not always a 100% complete assessment. It is generally performed with a time limit that's decided by the customer. Because of this, we will attempt to discover and probe as much as possible with the given time but things *can* be missed.
 
If you'd like a deeper audit, we are more than happy to offer it. In the past, we've offered customers the option to have a full day audit as opposed to the regular 2-3 hours. It should be noted, however, if you only have a simple web application and a few servers, paying for the full audit may be overkill. Or it may be just what you need. Every situation is different.

Thanks in advance for reading this and we hope to serve the Bitcoin community as best as we can. 

References and Resumes available. Reference list is extremely truncated due to NDAs. Reference list will not contain anything related to the company/IP addresses/findings/etc.
gogodr
Sr. Member
****
Offline Offline

Activity: 434
Merit: 250



View Profile
August 19, 2014, 04:45:16 PM
 #2

> Professional Penetration Tests
> rapeghost

Top notch marketing here.
rapeghost (OP)
Sr. Member
****
Offline Offline

Activity: 419
Merit: 250



View Profile
August 19, 2014, 04:49:15 PM
 #3

rapeghost = electronic rap ghost...
gogodr
Sr. Member
****
Offline Offline

Activity: 434
Merit: 250



View Profile
August 19, 2014, 04:53:10 PM
 #4

That makes it even funnier. xD
I'm dying here xD

Good luck with the pen testing work.
I think you could get better chances by showing a couple of successful stories. (websites you and your team diagnosed and currently are running with no problems)
rapeghost (OP)
Sr. Member
****
Offline Offline

Activity: 419
Merit: 250



View Profile
August 19, 2014, 05:08:19 PM
 #5

References are available upon request. Due to non-disclosure agreements, we are unable to just list them. It's not exactly easy.
awesome31312
Hero Member
*****
Offline Offline

Activity: 826
Merit: 504


View Profile
September 22, 2014, 02:57:22 PM
 #6

Why don't you start with this site

Account recovered 08-12-2019
PotatoPie
Member
**
Offline Offline

Activity: 97
Merit: 10


View Profile
September 22, 2014, 08:13:21 PM
 #7

Do you do automated testing or do you do it all manually?

BTC Address: 13mUzcjYysbgNWstbasJ3PVkPB2nCUEqFg
subSTRATA
Legendary
*
Offline Offline

Activity: 1288
Merit: 1043


:^)


View Profile
September 22, 2014, 09:40:07 PM
 #8

> Professional Penetration Tests
> rapeghost

Top notch marketing here.

ROFL of the day award, congratz!  Cheesy

theres nothing here. message me if you want to put something here.
nubbins
Legendary
*
Offline Offline

Activity: 1554
Merit: 1009



View Profile
September 24, 2014, 02:50:27 PM
 #9

http://bitcoin-otc.com/viewratingdetail.php?nick=rg

Click the "Created At" heading twice to see rapeghost's more recent OTC activity.

(Full disclosure: he tried to rip me off in the past)

No longer buying/selling Casascius coins. Beware scammers.
My OTC Web of Trust ratings / What's a PGP chain of custody?
Anduck
Legendary
*
Offline Offline

Activity: 1511
Merit: 1072


quack


View Profile
September 24, 2014, 02:51:16 PM
 #10

Who is "we" by the way?

csmcanarney
Newbie
*
Offline Offline

Activity: 16
Merit: 0


View Profile
September 24, 2014, 02:57:21 PM
 #11

Pentesting's quite the upgrade over the "business" of taking out loans you don't intend to pay off.

Where's my money, rg?
awesome31312
Hero Member
*****
Offline Offline

Activity: 826
Merit: 504


View Profile
September 24, 2014, 03:05:24 PM
 #12

Pentesting's quite the upgrade over the "business" of taking out loans you don't intend to pay off.

Where's my money, rg?

I doubt he owes you anything, since you have only made two posts on the forums, both of them off-topic rants about "where's my money?"

Account recovered 08-12-2019
nubbins
Legendary
*
Offline Offline

Activity: 1554
Merit: 1009



View Profile
September 24, 2014, 03:16:37 PM
 #13

Pentesting's quite the upgrade over the "business" of taking out loans you don't intend to pay off.

Where's my money, rg?

I doubt he owes you anything, since you have only made two posts on the forums, both of them off-topic rants about "where's my money?"

Maybe not so off-topic:

id
rater nick
rater total rating
rated nick
created at (UTC)
rating
notes
34265
csm
154
rg
2014-04-08 20:30:52
-10
unpaid debt

No longer buying/selling Casascius coins. Beware scammers.
My OTC Web of Trust ratings / What's a PGP chain of custody?
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!