ISS article takes a swipe at readers of the best-selling Hacking Exposed book series. Gunter Ollmann manages to offend both prospective clients and those who perform his “blind penetration tests” The article doesn’t seem to understand the difference between a vulnerability assessment and a penetration test. A vulnerability assessment involves discovering and documenting vulnerabilities, whether with “blind” or “crystal box” knowledge of the target. A penetration test moves beyond discovery to actual compromise, where the analyst exploits targets to gain greater access.”]
Source: https://taosecurity.blogspot.com/2003/05/this-article-by-gunter-ollmann-of-iss.html

