Andy's Web Services, Inc.

Strategic Cybersecurity Consulting & Defense

If you know, you know.

Assessment

Identify vulnerabilities before the adversaries do.

  • Unparalleled offensive hacking capability
  • Advanced Penetration Testing
  • Network & Web Application Security
  • Threat Modeling
  • Red Teaming Exercises

Advisory

Strategic guidance for compliance and remediation.

  • Vulnerability Remediation
  • NIST 800-53 & 800-171 Compliance
  • CMMC Readiness Assessments
  • NIST CSF Implementation

Operations

Ongoing protection and managed security services.

  • Managed Security Services (MSSP)
  • Continuous Monitoring
  • Incident Response Planning
  • Security Infrastructure Management

About Andy

Andy has over 25 years of professional cybersecurity experience, with a healthy balance between offensive and defensive roles. Andrew "Andy" Rahimi is most well-known for demonstrating the ability to wiretap all Verizon Wireless cell phone customers at Black Hat and Defcon in 2013. On a team with NCC Group's finest, Andy presented a novel approach for cloning phones running on the Verizon Wireless network, as well as the capability to selectively record and manipulate private phone calls, text messages, and data sessions of any Verizon Wireless 2G or 3G mobile device. After that Defcon, Andy promised to never wiretap any more cell phones, and to never check to see if Verizon completely fixed the vulnerability.

Andy's cell phone hacking escapades have been cited by:

  • "The Art of Intrusion" by Kevin Mitnick
  • "Red Team: How to Succeed by Thinking like the Enemy" by Micah Zenko
  • "Hacking Exposed Wireless, Third Edition: Wireless Security Secrets & Solutions" by Joshua Wright and Johnny Cache
  • NIST Special Publication 800-187: "Guide to LTE Security"
  • Live demonstration wiretapping a CNNmoney journalist's personal iPhone 4S
  • Numerous Chinese-language and Russian-language books and hacking manuals
  • ...and many more!

After too many run-ins with men in black at the Caesar's Palace buffet line, Andy made a career out of helping private businesses secure their digital assets. Andy's Web Services represents a straight-to-the source consultancy that brings interdisciplinary cybersecurity experience, via a lifetime of building a network of world-class breakers & defenders.