Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I run a business selling penetration testing software that I develop. It's completely bootstrapped. I do very little services work (I actively send this type of stuff to friend's companies). Right now, it's just me, although that's probably going to change. By most of my own definitions and the one you posted here... it's successful.

How did I get started on this? Sort of by accident.

I was working for Automattic after an acqui-hire thing. After a year there, I found that I missed working in security. I found a full-scope penetration testing gig three blocks from my apartment.

In my spare time, I started to tinker with a few ideas and released them as an open source project. Said project saw a lot of interest within the hacker community very quickly. I didn't expect this. Folks formed an opinion on it pretty quickly. Some people hate it. Others love it. Of those who know it, very few are in-between.

I left my pen testing job with a decent amount of money saved up. I didn't know exactly what I would go and do afterwards. I spent some time tinkering with Android, just for giggles.

I was very reluctant to start a business that used my "successful?" open source project. Partially because it leverages another open source project owned by another company.

I was at a conference in 2011 and someone from a US government agency asked if I was selling anything. I said no. He said that was too bad, because he had end of year money, and he liked my open source stuff. It was then that I decided to look at expanding my open source kit into a commercial product.

April will mark the two year anniversary of my first customer. My customers are well known organizations and they trust my software to assess how well they protect their networks. I'm constantly in awe of this.



When's the end of year money period?


Pretty much oct, nov, december you will see large enterprise shops who have unspent capex budget, and are afraid that if they do not spend it, the next years budget will be reduced to last years spend.. So most enterprise fiefdoms spend 99-100% of capex budget regardless of if they needed it or not.


For the US government it is usually August and September. The fiscal year ends on September 30.


Congratulations on your successful business. Can you share link to your business website please?





Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: