OSSTMM
The Open Source Security Testing Methodology Manual (OSSTMM) is a peer-reviewed methodology for performing security tests and metrics.
Information
Founded:
January 2001
Fans
Photos

1 albumSee All

Wall PhotosCreated about a month ago
No one has added fan photos.
 
OSSTMM

OSSTMM The CERN symposium slides are now available. They cover OSSTMM v.3 security metrics and superheroes.

Gabriel Kane
Gabriel Kane
I am impressed.
November 17 at 2:13pm
OSSTMM

OSSTMM Parts of OSSTMM 3 have been included in the next version of the ISO 27000 ISMS manual! Now it's also being presented to be its own ISO standard. So far we have support from the USA, Germany, Italy, and Brazil. Contact your national standards organization to push their support for the OSSTMM as its own ISO standard for Operational Security.

November 13 at 1:48am
OSSTMM

OSSTMM Pete's been working on the Official Training Guide for New Superheroes, a manual that shows how to get ultimate power and control over your security. Hence, the superhero theme :) "The Official Training Guide for New Superheroes" is free to attend if you're around Barcelona or Madrid but you need to register. All details are available here: http://www.dotforce.es/immagini/eventi/Programa.html

Source: www.dotforce.es
OSSTMM

OSSTMM The Psychology Today Magazine article, Everyday Creativity begins with
an example of Pete Herzog doing some basic toy hacking. It's an interesting
article that explores how creative non-artistic people can be. It's
something I always felt is the advantage of people over computers for
hacking.
It's available online here:
http://www.psychologytoday.com/articles/200910/everyday-creativity

Source: www.psychologytoday.com
We all marvel at other people's artistic achievements and ingenuity. But most of us fail to nurture our inner innovator. Start living creatively and reap the benefits—including fewer relationship headaches and more fulfilling workdays. By Carlin Flora | Psychology Today
OSSTMM

OSSTMM just to try it, we used the RAVs from OSSTMM 3 to find the Attack Surface of a Person to measure their exposure to the H1N1 virus. Interesting results. A Healthy adult is more protected than Healthy adult + Vaccine.

Actual Security to H1N1 Virus based on the RAVs from ISECOM The RAV shows how much you are protected to a particular threat. The higher the number, the more you are protected...
By:Pete
Manuel Moreno Leiva

Manuel Moreno Leiva Can be great if any official training center be in Chile or Latam... we can´t found no one here in Latam! :(

October 27 at 3:05pm · Report
OSSTMM
OSSTMM
Interested parties should visit the ISECOM website and contact the ISECOM office directly through there.
November 4 at 10:19pm
OSSTMM
OSSTMM
Interested parties should visit the ISECOM website and contact the ISECOM office directly through there.
November 4 at 10:54pm
OSSTMM

OSSTMM We recently finished the re-design of the new RAV calculation sheet to measure the attack surface of anything. Those not familiar, the RAVs are the core of the OSSTMM providing mathematical sensibility and logic to the currently chaotic practice of security testing.

Alvin Singh Khadaroo

Alvin Singh Khadaroo How to get started in Mauritius

October 9 at 7:56pm · Report
OSSTMM
OSSTMM
In many places where ISECOM doesn't reach yet, it's important for you to take lead. You can get people together, maybe make a seminar, and ISECOM can support you with presentations, information, and assistance. It's important that we get more people able to make sense of security.
October 12 at 1:29am
Umar Khan
Umar Khan
Karachi, Pakistan could do with some exposure to OSSTMM. I want to conduct 1-day free seminar; I would need OSSTMM presentation and other relevant information.
October 17 at 8:21pm
Michael Mondragon

Michael Mondragon How do I become a contributor to OSSTMM/ISECOM?

October 6 at 5:43pm · Report
OSSTMM
OSSTMM
To be a contributor, the best thing to do is to contact ISECOm off the website with the projects they have that interest you or a suggestion for a new project you want to collaborate with. We can always use more people!
October 12 at 1:25am
OSSTMM

OSSTMM Started mapping out OSSTMM 4 as we close OSSTMM 3. So far, planned for 4 is tighter integration with Trust Metrics in the tests for improved segregation of resources leading to less maintenance needs and costs. Also looking to integrate the Möbius Defense in as well. Many smaller improvements will also follow. Anything else? Now taking suggestions.

September 23 at 4:14am
Reebal Ghrawi

Reebal Ghrawi I'm looking for ISECOM classes in the KSA - Jeddah ??

August 27 at 8:25am · Report
OSSTMM
OSSTMM
You should check out the ISECOM website for classes in the region. I think the closest class is in Bahrain.
September 23 at 4:11am
OSSTMM

OSSTMM Anyone interested in getting involved in the Bad People Project? http://www.facebook.com/note.php?note_id=53668204885&1&index=1

What do bad people look like to children? This is my submission to how kids envision "bad people". Instructions: This is to be a part of the gallery of "bad people" drawings from children to promote child safety and security projects at ISECOM (www.isecom.org)...
By:Pete
OSSTMM

OSSTMM Just a reminder to people looking for ISECOM classes in the USA: there will be one next month in Indianapolis. It is the OSSTMM Security Analyst class from Sept. 21 - 25 and includes the Certification Exam. For more details contact Chris Griffin at 317-903-6516 or by e-mail to info@isecom.org.

August 26 at 3:12am
Chandrasekar Umapathy

Chandrasekar Umapathy I am from India What is the best way to acheive OPST certification.

August 24 at 3:13pm · Report
OSSTMM
OSSTMM
We are working on a remote training program which combines self-study with mentoring. Contact ISECOM directly at www.isecom.org.
August 26 at 3:13am
Iip Permana

Iip Permana May I ask some question ?
There is possible to use OSSTMM 3.0 to test security of mobile banking using Transport Layer Security(TLS) in Wireless Application Protocol(WAP 2.0) ?
The target is confidentiality, message integrity, mutual authentication, non-repudiation, and prevent replay attack.
Would it be complicated for me to do ?
I use this for my final work at my collage to get bachelor degree.

August 18 at 5:59am · Report
OSSTMM
OSSTMM
With OSSTMM 3.0, this work can be done with more simplicity and clarity than with OSSTMM 2.2. Chapters 1 and 2 of OSSTMM 3 describe how to set up to do this and the methodology itself with give you the tests you need to do.
August 26 at 3:15am