In February 2009, SensePost, a leading Information Security consultancy was
engaged by SID Payment to perform an assessment of SID, the new web-based
payment platform developed by SID Payment.
Technical testing was conducted from a common point on the Internet using
access privileges normally granted to parties with access to the SID
environment. Testing was conducted by qualified, experienced SensePost staff
and included the use of industry standard software tools as well as manual
techniques. SensePost's application testing was designed to test SID's
systems for known security vulnerabilities, and to determine the extent to
which those systems are vulnerable to an attack. In addition to the
technical testing, SensePost performed an architecture assessment and
reviewed key practices surrounding software development and subsequent use
of SID application.
Having reviewed the application code and conducting a series of penetration
tests, SensePost found that SID have identified and addressed the common
threats to web based applications through adopting secure coding practices
and deployment of a hardened application delivery infrastructure that is
well secured against typical security breaches.
For more information on SID, please click here to contact us.
About SensePost
SensePost is an independent company
specialising exclusively in Information Security. SensePost was founded in
2000 by internationally recognised industry experts and has become one of
the foremost Information Security consultancies in the world market. |