Physical penetration testing can bypass seemingly impenetrable security measures in a prison setting.
Social engineering techniques can be used for defensive purposes, such as infiltrating prison computers or tracking down criminals.
Deep dives
Testing Prison Security
During this podcast episode, the speaker recounts an experience where they were hired to test the security of a prison. They discuss the double gates, high fences, and guard towers that make it difficult for anyone to escape. Despite the seemingly impossible barriers, the speaker shares their successful attempt at testing the prison's security measures.
Penetration Testing for Good
The podcast also explores a story where the speaker's mother, who was the CFO of their penetration testing company, decides to participate in a physical penetration test. With a ruse of conducting a health inspection, she gains access to a prison and successfully infiltrates their computers. This story highlights the importance of social engineering and using offensive tactics for defensive purposes.
Assisting Law Enforcement
Another significant account in the podcast is about how the speaker and their team assisted law enforcement in tracking down a child kidnapper. Through social engineering techniques and the use of a beaconing document, they were able to obtain the suspect's IP address, leading to the rescue of the abducted child.
Personal Reflections and Superhero Cape
The episode concludes with personal reflections from the speaker, highlighting the dedication and fearlessness of their late mother. They share a touching moment of their mother handing them a Superman cape as a symbol of choosing the path of a superhero rather than one leading to prison. This poignant anecdote underscores the loving relationship and admiration between the speaker and their mother.
John Strand is a penetration tester. He’s paid to break into computer networks and buildings to test their security. In this episode we listen to stories he has from doing this type of work.
Thanks to John Strand for coming on the show and telling your story.
Sponsors
Support for this episode comes from LastPass. LastPass is a great password manager but it can do so much more. It can setup 2FA for your company, or use it to monitor what your users are doing in the network. Visit LastPass.com/Darknet to start your 14 day free trial.
Support for this episode comes from Blinkist. They offer thousands of condensed non-fiction books, so you can get through books in about 15 minutes. Check out Blinkist.com/DARKNET to start your 7 day free trial and get 25% off when you sign up.