Security Services

At HHSmithy we have a passion for IT security and protecting online poker players (as we are poker players ourselves). Datamining requires intricate knowledge of poker software, so we are perfectly positioned to investigate the security of many different online poker sites and infrastructures. In addition, we are uniquely positioned as a source of millions of poker hand histories a day, allowing us to independently analyze the fairness and integrity of the games.

With the above in mind we have recently partnered with security service provider SeNet and have launched our own dedicated poker security service, PokerSec.org. Please check out our blog for a full press release.

Examples of Our Findings

We've recently start publicizing our findings on our blog. Here are some of our notable discoveries.

  • Party Poker anonymous tables not truly anonymous and open to client side vulnerability (read more).
  • Bodog anonymous tables not truly anonymous and open to client side vulnerability (read more)
  • Bodog log in system vulnerable to large scale brute force hack (read more)
  • Full Tilt Poker breaching their user's personal privacy (read more)

Our Services

For a full list of our services, please visit PokerSec.org. Here are a few examples of things we can offer:

Poker Client Integrity
  • Gaming Software & Protocol reverse engineering (Server and Client side).
  • Client-server communication vulnerability testing.
  • Client-side exploit discovery.
  • Discovery of potential weaknesses to denial of service attacks.
  • Code review and vulnerability analysis.
  • Penetration testing.
  • Web application vulnerability assessment.
  • Infrastructure security review.
  • Secure application engineering.
  • Compliance/regulatory review.
  • Forensic/Incident response.
  • Payment Card Industry (PCI) Compliance Testing.
  • Forensic analysis and Expert witness services.
  • Information Security Architecture Design and Implementation.
Hand History Analysis
  • Random number fairness.
  • Bot detection.
  • Collusion detection.
  • Chip dumping detection.
  • Cheating detection.

Contact Us

If you are aware of any suspicious software or activity, or would like to inquire about our services please contact us at security@pokersec.org. For more information on our security initiative please visit PokerSec.org.