gleg.net
Products Services Resources Partners About

Protocol Verification service

Introduction:
  • If the software product you would like to purchase supports one of the protocols listed in the table below - this service is for you.
    A variety of protocol verification tests will be performed, utilising state-of-the-art fault-injection software and resulting in the proactive discovery of security vulnerabilities.
  • If you would like to compare the protocol implementations of several products and choose the best - this service is for you.
    We will test each product you are interested in and provide you with the results which would help you to compare and contrast the protocol implementation of each product.
  • If the software you are regularly using supports one of the procotols listed in the table below - this service is also for you.
    We will test the product with our fault-injection software and provide you with a sample exploit code written in Python and remediation advice.
  • If you would like to perform a protocol verification of the software product but the protocols it supports are not listed in the table below - this service is for you.
    Our experienced team of security professionals is able to write a working comprehensive fault-injection testsuite for the protocol you are interested in within a few weeks.
  • If you would like to test a product, but you are unsure about the license terms of the results of the work - this service is for you.
    The results of a protocol verification tests are provided under the license which would allow you to report the security vulnerabilities to a vendor.

To perform protocol verification tests we are using our internal fault-injection testsuites which we have been developing and polishing for years. Most of the vulnerabilities in VulnDisco Pack have been found with these testsuites.

At the end of the testing: you will receive a report with a list of vulnerabilities we found along with sample code written in Python. The sample code will allow you to quickly reproduce the results, while the report provides you with technical analysis of the discovered vulnerabilities.

Protocols:
Protocol Total number of tests
RADIUS ~10000000
POP ~100000
IMAP ~500000
SMTP ~200000
SSH ~100000
SSL ~1000000
LDAP ~750000
SNMP ~650000


Additional information:

If you are interested in this service and would like to discuss it in detail - contact us via email info@gleg.net.
Protocol Verification service


© 2004-2008 GLEG Ltd contact us
  All rights reserved info with gleg.net