• Pen­testers love 0days and cool exploits. “There are FAR more mis­con­fig­u­ra­tions than vulns.” “Vulns will be detect­ed and patch­es by Nes­sus, Nex­pose, etc.” “Mis­con­fig­u­ra­tions typ­i­cal­ly are missed by scanners.” “You want to increase secu­ri­ty? Go to your boss and change the job descrip­tions of admins to include con­fi­den­tial­ty and integri­ty. That mat­ters more than any­thing else.” “If you…