Każda powierzchnia ataku, którą dostarczasz, testowana ręcznie.
Sześć wyspecjalizowanych obszarów praktyki, jeden model dostarczania. Wybierz zasoby wymagające testów lub zdefiniuj łączone zaangażowanie dla wszystkich.
Każda powierzchnia, którą wdrażasz, przetestowana ręcznie.
Wybierz jeden lub wszystkie sześć typów assetów — zakres decyduje o cenie i nie jest dołączane nic, czego nie potrzebujesz.
Role-aware web testing and REST/GraphQL API coverage, including undocumented routes.
- OWASP Top 10 + logic flaws
- REST & GraphQL endpoint testing
- Multi-role authz + rate limits
iOS and Android binaries plus their backend APIs.
- Static and runtime analysis
- Local storage and keychain
- Certificate pinning bypass
Internal or external hosts, on-prem or hosted.
- Service and version exposure
- Credential and lateral paths
- Segmentation checks
AWS, Azure and GCP account review.
- IAM privilege escalation
- Public storage and secrets
- Logging and guardrails
Phishing and pretext campaigns with consent.
- Targeted phishing waves
- MFA fatigue attempts
- Awareness reporting
Full adversary simulation testing detection, response and resilience.
- Multi-stage attack chains
- Detection and response gaps
- MITRE ATT&CK mapping
Każdy obszar praktyki, szczegółowo.
Każda strona obejmuje zakres, funkcje, metodologię, przykładowe wyniki i wyspecjalizowane FAQ.
Role-aware web testing and REST/GraphQL API coverage, including undocumented routes.
- OWASP Top 10 + logic flaws
- REST & GraphQL endpoint testing
- Multi-role authz + rate limits
iOS and Android binaries plus their backend APIs.
- Static and runtime analysis
- Local storage and keychain
- Certificate pinning bypass
Internal or external hosts, on-prem or hosted.
- Service and version exposure
- Credential and lateral paths
- Segmentation checks
AWS, Azure and GCP account review.
- IAM privilege escalation
- Public storage and secrets
- Logging and guardrails
Phishing and pretext campaigns with consent.
- Targeted phishing waves
- MFA fatigue attempts
- Awareness reporting
Full adversary simulation testing detection, response and resilience.
- Multi-stage attack chains
- Detection and response gaps
- MITRE ATT&CK mapping
Nie masz pewności, które powierzchnie Cię dotyczą?
Uruchom formularz zakresu. Prowadzi Cię przez pytania, które Twój audytor będzie zadawał, i na końcu generuje wycenę.
