Elk aanvalsoppervlak dat u levert, handmatig getest.
Zes gespecialiseerde praktijkgebieden, één leveringsmodel. Kies de assets die getest moeten worden, of definieer een gecombineerd engagement voor alle.
Elk systeem dat u in productie zet, handmatig getest.
Kies een of alle zes asset-types — de scope bepaalt de prijs, en er wordt niets meegeleverd wat u niet nodig heeft.
Role-aware web testing and REST/GraphQL API coverage, including undocumented routes.
- OWASP Top 10 + logic flaws
- REST & GraphQL endpoint testing
- Multi-role authz + rate limits
iOS and Android binaries plus their backend APIs.
- Static and runtime analysis
- Local storage and keychain
- Certificate pinning bypass
Internal or external hosts, on-prem or hosted.
- Service and version exposure
- Credential and lateral paths
- Segmentation checks
AWS, Azure and GCP account review.
- IAM privilege escalation
- Public storage and secrets
- Logging and guardrails
Phishing and pretext campaigns with consent.
- Targeted phishing waves
- MFA fatigue attempts
- Awareness reporting
Full adversary simulation testing detection, response and resilience.
- Multi-stage attack chains
- Detection and response gaps
- MITRE ATT&CK mapping
Elk praktijkgebied, in detail.
Elke pagina behandelt scope, functies, methodologie, voorbeeldbevindingen en gespecialiseerde FAQ's.
Role-aware web testing and REST/GraphQL API coverage, including undocumented routes.
- OWASP Top 10 + logic flaws
- REST & GraphQL endpoint testing
- Multi-role authz + rate limits
iOS and Android binaries plus their backend APIs.
- Static and runtime analysis
- Local storage and keychain
- Certificate pinning bypass
Internal or external hosts, on-prem or hosted.
- Service and version exposure
- Credential and lateral paths
- Segmentation checks
AWS, Azure and GCP account review.
- IAM privilege escalation
- Public storage and secrets
- Logging and guardrails
Phishing and pretext campaigns with consent.
- Targeted phishing waves
- MFA fatigue attempts
- Awareness reporting
Full adversary simulation testing detection, response and resilience.
- Multi-stage attack chains
- Detection and response gaps
- MITRE ATT&CK mapping
Weet u niet zeker welke oppervlakken op u van toepassing zijn?
Start het scopingformulier. Het leidt u door de vragen die uw auditor gaat stellen, en genereert aan het einde een offerte.
