Penetration Testing
JIRA Pentest Oct 18 2011 03:28PM
Bog Witch (iambogwitch gmail com) (2 replies)
Re: JIRA Pentest Oct 19 2011 01:56PM
Patrick Webster (sflist aushack com)
Check for embedded 3rd party software bugs.

E.g. http://www.osisecurity.com.au/advisories/jfreechart-path-disclosure
applies to some Atlassian products. Path disclosure ain't much but may
help you combined with other bugs.

-Patrick

On Wed, Oct 19, 2011 at 2:28 AM, Bog Witch <iambogwitch (at) gmail (dot) com [email concealed]> wrote:
> All,
>
> Is there anyone on this list with commercial JIRA pentest exposure?
>
> Please email responses directly.
>
> Thanks,
>
> Bog
>
> ------------------------------------------------------------------------

> This list is sponsored by: Information Assurance Certification Review Board
>
> Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.
>
> http://www.iacertification.org
> ------------------------------------------------------------------------

>
>

------------------------------------------------------------------------

This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT and CEPT certs require a full practical examination in order to become certified.

http://www.iacertification.org
------------------------------------------------------------------------

[ reply ]
Re: JIRA Pentest Oct 18 2011 07:54PM
securityfocus rawchaos com


 

Privacy Statement
Copyright 2010, SecurityFocus