Penetration Testing mailing list archives

[PEN-TEST] Legal aspect of Pen-Test


From: Pascal Longpre <longprep () HOTMAIL COM>
Date: Thu, 5 Oct 2000 15:35:07 EDT

Hi,

Does anyone has a template or an example of what a legal Pen-Test contract
looks like, so the security firm is covered in the case where:
- The Pen-Tester get traced and the police knocks at his door
- The Pen-Tester is beleived to have cause damage to the customer equipment
or data during the penetration.
- the customer has followed the security firm's advices and implemented the
required security mesures but is hacked a few days after.
- Any other problem that can arise from the security firms activities

I'm looking for the legal stuff or ideas of what it might include.

Regards

Pascal

_________________________________________________________________________
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

Share information about yourself, create your own public profile at
http://profiles.msn.com.


Current thread: