@sawaba Never heard of that happening. Testers I know have popped card data on "PCI certified" systems every time they tried.
-
-
@attritionorg I've been able to get local (non root) account, but then couldn't do crap because it was so locked down. Layers. -
I have to say,
@sawaba that my experience aligns with@attritionorg. I know pentesters w/100% success rate in extracting CCD. Skill matters -
@beaker@attritionorg I'm not the best pentester out there, but I can recognize where a greater or theoretical skillset could go further. -
@sawaba@attritionorg ...and that wasn't meant to suggest you weren't skilled, btw, but that certain folks really are elite at what they do -
@Beaker@sawaba@attritionorg 100% compliant means absolutely nothing endgame-wise to a really good attacker/pentester with enough time
End of conversation
New conversation -
-
-
@attritionorg That's not my personal experience at all, especially with retail.Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.