@Stu
Yeah, that would be a bit cheeky.
But here's another scenario - a pen tester by the name of raven worked for years as an ISP engineer. She got sick of the general lack of security and the kicks to the head she got when the risks she was warning management about crystallised into issues and impacted the operation.
So, she went into pen testing, where she did an excellent job of revealing the poor levels of security observed by ISPs.
Not saying that's happened here - I happen to believe MS to be much more security conscious than many vendors. A LOT more. There are probably a lot more shades of grey here...


