Wednesday — October 21st, 2009 12:15
In this talk we propose a risk assessment paradigm which uses the attacker's point of view. Our proposal incorporates a symbiosis between threat discovery and threat classification where we are able to plan tests for the most important threats and concurrently analyze the results we obtain. Our research is based in the idea that attacker-centric risk and metrics principles should guide the next generations of assessment tools.
Ezequiel Gutesman (Core Security Technologies, AR) 
Fernando Miranda (Core Security Technologies, AR) 