Penetration Testing considered harmful today

Early last year we presented at 44con with a talk titled: "Penetration Testing considered harmful today".

The central thesis of the talk is that penetration testing has established itself as a necessary activity for securing a network and is now pushed forward by a multi million dollar industry despite the clear signs that it is not helping all that much. (Read the annotated slides here)

