Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • World
  • Users
  • Groups
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (Darkly)
  • No Skin
Collapse
Brand Logo
  1. Home
  2. Uncategorized
  3. Well...

Well...

Scheduled Pinned Locked Moved Uncategorized
33 Posts 14 Posters 98 Views
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • derekheldD derekheld

    @csgraves @tinker sometimes I forget how weird penetrating testing sounds to non-security/non-tech people, especially physical testing

    Tinker ☀️T This user is from outside of this forum
    Tinker ☀️T This user is from outside of this forum
    Tinker ☀️
    wrote last edited by
    #14

    @derekheld @csgraves - It's its own thing. And its such a small and niche world. Even doing the debrief to the security team and going through our methodology... they aren't used to pentesters.

    I got a lot of... "What was your childhood like?", lol! Hahaha!!!

    1 Reply Last reply
    0
    • John Francis 🇨🇦🦫🍁💪⬆️J John Francis 🇨🇦🦫🍁💪⬆️

      @tinker @csgraves do you worry about being shot by overenthusiastic security? That cowboy guard who's secretly been bringing a personal handgun to work?

      Tinker ☀️T This user is from outside of this forum
      Tinker ☀️T This user is from outside of this forum
      Tinker ☀️
      wrote last edited by
      #15

      @johnefrancis @csgraves - Yes.

      And we have policy and procedure and methodologies and training and lots of things to minimize and prevent this.

      But it's a thing.

      John Francis 🇨🇦🦫🍁💪⬆️J 1 Reply Last reply
      0
      • Tinker ☀️T Tinker ☀️

        @johnefrancis @csgraves - Yes.

        And we have policy and procedure and methodologies and training and lots of things to minimize and prevent this.

        But it's a thing.

        John Francis 🇨🇦🦫🍁💪⬆️J This user is from outside of this forum
        John Francis 🇨🇦🦫🍁💪⬆️J This user is from outside of this forum
        John Francis 🇨🇦🦫🍁💪⬆️
        wrote last edited by
        #16

        @tinker @csgraves maybe a vest...a vest that says "TEST NERD" on it or something.

        Matti AleveM 1 Reply Last reply
        0
        • Tinker ☀️T Tinker ☀️

          Well... Last week was fun.

          Broke into a building. Also broke into an industrial facility.

          I had to climb sooo many fences and hop soooo much barbed wire.

          I hadn't needed to do that in much too long of a time. I've been too sedentary for a short bit.

          But I've still got it!

          Hopped an 8ft security fence with about 1.5ft of barbed wire on top. My colleague violated HR protocols and helped me up with a swift push to my ass. I returned the favor by going into the target site and stealing a ladder. Brought it back and lobbed it over the fence so he could climb over.

          All in all, a good run.

          And with that, I am on a cutting diet now. Need to lose another 20 pounds. And I'm adding mobility training and maybe even climbing gym to my daily walks and weekly hikes. That'll help for the next run.

          b4ux1t3 :trek_ds9_sisko:#1️⃣B This user is from outside of this forum
          b4ux1t3 :trek_ds9_sisko:#1️⃣B This user is from outside of this forum
          b4ux1t3 :trek_ds9_sisko:#1️⃣
          wrote last edited by
          #17

          @tinker I don’t miss a lot of the work from my former career.

          Physical pentesting is on the list, though.

          1 Reply Last reply
          0
          • JoureiJ Jourei

            @tinker @csgraves oh that's fun

            Tinker ☀️T This user is from outside of this forum
            Tinker ☀️T This user is from outside of this forum
            Tinker ☀️
            wrote last edited by
            #18

            @Jourei @csgraves - Yeah, it can be!

            1 Reply Last reply
            0
            • Tinker ☀️T Tinker ☀️

              @m4iler -

              1) I commended him! I asked him to give me a boost. Heck... he might report me, hahaha!
              2) I used old fashioned leather gloves. This was barbed wire, not razor/concertina wire. I don't fuck with concertina wire anymore. In the Marines, I had to bypass it. In the civilian world, I'll cut it and handle it with proper PPE - but I usually just avoid it. Barbed Wire is cool. Concertina wire is not.
              3) Good on you! I'm glad you made it work!

              At some point we should do a run together. Definitely.

              m4iler the Saboteur :debian: :t_blink:M This user is from outside of this forum
              m4iler the Saboteur :debian: :t_blink:M This user is from outside of this forum
              m4iler the Saboteur :debian: :t_blink:
              wrote last edited by
              #19

              @tinker I'll get the client, house you, but your roommate is gonna be ugly as hell!

              I actually work at a company where I was told "Heya, you can break in anywhere, hell that's what you're here for!"

              (plot twist, I'll be the roomie)

              Tinker ☀️T 1 Reply Last reply
              0
              • m4iler the Saboteur :debian: :t_blink:M m4iler the Saboteur :debian: :t_blink:

                @tinker I'll get the client, house you, but your roommate is gonna be ugly as hell!

                I actually work at a company where I was told "Heya, you can break in anywhere, hell that's what you're here for!"

                (plot twist, I'll be the roomie)

                Tinker ☀️T This user is from outside of this forum
                Tinker ☀️T This user is from outside of this forum
                Tinker ☀️
                wrote last edited by
                #20

                @m4iler - Here for it. I'm white-labeling right now so if you're serious, send me a DM and we can sort it out!

                m4iler the Saboteur :debian: :t_blink:M 1 Reply Last reply
                0
                • Tinker ☀️T Tinker ☀️

                  @m4iler - Here for it. I'm white-labeling right now so if you're serious, send me a DM and we can sort it out!

                  m4iler the Saboteur :debian: :t_blink:M This user is from outside of this forum
                  m4iler the Saboteur :debian: :t_blink:M This user is from outside of this forum
                  m4iler the Saboteur :debian: :t_blink:
                  wrote last edited by
                  #21

                  @tinker Bro, I don't I could pay for your time 😂 me OR the company.

                  But one day...

                  One day.

                  1 Reply Last reply
                  0
                  • John Francis 🇨🇦🦫🍁💪⬆️J John Francis 🇨🇦🦫🍁💪⬆️

                    @tinker @csgraves maybe a vest...a vest that says "TEST NERD" on it or something.

                    Matti AleveM This user is from outside of this forum
                    Matti AleveM This user is from outside of this forum
                    Matti Aleve
                    wrote last edited by
                    #22

                    @johnefrancis @tinker @csgraves

                    The best Darknet Diaries episodes are the red teaming ones.

                    Oh I dunno, like this one 😀

                    https://darknetdiaries.com/transcript/55/

                    Tinker ☀️T EmmaE 2 Replies Last reply
                    0
                    • Tinker ☀️T Tinker ☀️

                      Well... Last week was fun.

                      Broke into a building. Also broke into an industrial facility.

                      I had to climb sooo many fences and hop soooo much barbed wire.

                      I hadn't needed to do that in much too long of a time. I've been too sedentary for a short bit.

                      But I've still got it!

                      Hopped an 8ft security fence with about 1.5ft of barbed wire on top. My colleague violated HR protocols and helped me up with a swift push to my ass. I returned the favor by going into the target site and stealing a ladder. Brought it back and lobbed it over the fence so he could climb over.

                      All in all, a good run.

                      And with that, I am on a cutting diet now. Need to lose another 20 pounds. And I'm adding mobility training and maybe even climbing gym to my daily walks and weekly hikes. That'll help for the next run.

                      cyphercryptic_rebootC This user is from outside of this forum
                      cyphercryptic_rebootC This user is from outside of this forum
                      cyphercryptic_reboot
                      wrote last edited by
                      #23

                      @tinker without giving away all the secrets, where would one look if one were interested in physical pen testing careers? Any advice?

                      Tinker ☀️T 1 Reply Last reply
                      0
                      • cyphercryptic_rebootC cyphercryptic_reboot

                        @tinker without giving away all the secrets, where would one look if one were interested in physical pen testing careers? Any advice?

                        Tinker ☀️T This user is from outside of this forum
                        Tinker ☀️T This user is from outside of this forum
                        Tinker ☀️
                        wrote last edited by
                        #24

                        @cyphercryptic_reboot - Generally physical pentesters get pulled from IT / Computer pentesters. So folks that have some experience hacking into computers will be asked to physically pentest a place as well. (Not always, but thats the bulk right now - as physical pentests are often offered by consultancies that offer logical and social pentests as well)

                        Folks getting into pentesting consultancies come from a wide background but often have IT security backgrounds (intrusion detection, vuln scanning remediation, bug bounties, patch management, security engineering, etc), military, law enforcement, etc. Again not always.

                        Its sort of a niche of a niche of a niche.

                        cyphercryptic_rebootC 1 Reply Last reply
                        0
                        • Matti AleveM Matti Aleve

                          @johnefrancis @tinker @csgraves

                          The best Darknet Diaries episodes are the red teaming ones.

                          Oh I dunno, like this one 😀

                          https://darknetdiaries.com/transcript/55/

                          Tinker ☀️T This user is from outside of this forum
                          Tinker ☀️T This user is from outside of this forum
                          Tinker ☀️
                          wrote last edited by
                          #25

                          @maleve @johnefrancis @csgraves - Hahaha, I enjoyed that one 😂

                          1 Reply Last reply
                          0
                          • coleenC coleen

                            @tinker give em hell T!

                            Tinker ☀️T This user is from outside of this forum
                            Tinker ☀️T This user is from outside of this forum
                            Tinker ☀️
                            wrote last edited by
                            #26

                            @coleens_ 💪

                            coleenC 1 Reply Last reply
                            0
                            • Tinker ☀️T Tinker ☀️

                              @cyphercryptic_reboot - Generally physical pentesters get pulled from IT / Computer pentesters. So folks that have some experience hacking into computers will be asked to physically pentest a place as well. (Not always, but thats the bulk right now - as physical pentests are often offered by consultancies that offer logical and social pentests as well)

                              Folks getting into pentesting consultancies come from a wide background but often have IT security backgrounds (intrusion detection, vuln scanning remediation, bug bounties, patch management, security engineering, etc), military, law enforcement, etc. Again not always.

                              Its sort of a niche of a niche of a niche.

                              cyphercryptic_rebootC This user is from outside of this forum
                              cyphercryptic_rebootC This user is from outside of this forum
                              cyphercryptic_reboot
                              wrote last edited by
                              #27

                              @tinker thank you for the info!

                              1 Reply Last reply
                              0
                              • Matti AleveM Matti Aleve

                                @johnefrancis @tinker @csgraves

                                The best Darknet Diaries episodes are the red teaming ones.

                                Oh I dunno, like this one 😀

                                https://darknetdiaries.com/transcript/55/

                                EmmaE This user is from outside of this forum
                                EmmaE This user is from outside of this forum
                                Emma
                                wrote last edited by
                                #28

                                @maleve
                                @johnefrancis @tinker @csgraves

                                Wow, I've listened to that episode before but somehow never made the connection that this Tinker is also THAT Tinker! 🤯

                                Wendy NatherW Jdb_envJ 2 Replies Last reply
                                0
                                • Tinker ☀️T Tinker ☀️

                                  @coleens_ 💪

                                  coleenC This user is from outside of this forum
                                  coleenC This user is from outside of this forum
                                  coleen
                                  wrote last edited by
                                  #29

                                  @tinker 🤘

                                  1 Reply Last reply
                                  0
                                  • EmmaE Emma

                                    @maleve
                                    @johnefrancis @tinker @csgraves

                                    Wow, I've listened to that episode before but somehow never made the connection that this Tinker is also THAT Tinker! 🤯

                                    Wendy NatherW This user is from outside of this forum
                                    Wendy NatherW This user is from outside of this forum
                                    Wendy Nather
                                    wrote last edited by
                                    #30

                                    @emma @maleve @johnefrancis @csgraves

                                    @tinker contains multitudes 💚

                                    1 Reply Last reply
                                    0
                                    • Tinker ☀️T Tinker ☀️

                                      @csgraves - The joke answer is "All law enforcement is distracted right now in my country, so who would prosecute me?"

                                      The real answer is... I'm paid to do this. It's my day job. Usually I'm sitting at home hacking into computers. But sometimes I get paid to break into places physically.

                                      Generally it's for testing security. So folks will pay me to break into their own buildings to see where the holes are or how well their security guards react to me.

                                      I pay my taxes. Everyone's happy.

                                      Callista GravesC This user is from outside of this forum
                                      Callista GravesC This user is from outside of this forum
                                      Callista Graves
                                      wrote last edited by
                                      #31

                                      @tinker fair enough. I was probably a bit too hasty with my declaration there, and I get it.

                                      Tinker ☀️T 1 Reply Last reply
                                      0
                                      • Callista GravesC Callista Graves

                                        @tinker fair enough. I was probably a bit too hasty with my declaration there, and I get it.

                                        Tinker ☀️T This user is from outside of this forum
                                        Tinker ☀️T This user is from outside of this forum
                                        Tinker ☀️
                                        wrote last edited by
                                        #32

                                        @csgraves - Oh no worries at all. Its certainly not a "normal" profession.

                                        1 Reply Last reply
                                        0
                                        • EmmaE Emma

                                          @maleve
                                          @johnefrancis @tinker @csgraves

                                          Wow, I've listened to that episode before but somehow never made the connection that this Tinker is also THAT Tinker! 🤯

                                          Jdb_envJ This user is from outside of this forum
                                          Jdb_envJ This user is from outside of this forum
                                          Jdb_env
                                          wrote last edited by
                                          #33

                                          @emma @tinker @maleve @johnefrancis @csgraves
                                          Hahaha !
                                          Same here ! Enjoyed the reading.

                                          1 Reply Last reply
                                          0
                                          • R AodeRelay shared this topic
                                          Reply
                                          • Reply as topic
                                          Log in to reply
                                          • Oldest to Newest
                                          • Newest to Oldest
                                          • Most Votes


                                          • Login

                                          • Don't have an account? Register

                                          • Login or register to search.
                                          Powered by NodeBB Contributors
                                          • First post
                                            Last post
                                          0
                                          • Categories
                                          • Recent
                                          • Tags
                                          • Popular
                                          • World
                                          • Users
                                          • Groups