Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You should explain how they do it.

If for instance they're remoting into a restricted VM all day, that's a different set of tradeoffs many might not be happy with.



Nothing like that, basically what sitharus said above you. Extra network level, zero trust to minimize lateral movement and giving the pen testers a leg up by letting them start already within the corporate network.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: