Security Assessment.
We provide information testing, initial tests, reports & post-hardening tests.
Security Posture Assessment (SPA).
To perform simulated load testing to identify the crash point or the point where the perceptible slowdown is noticed in the request processing.
- To address OWASP Top 10 Vulnerability:
- Injection
- Broken Authentication and Session Management (XSS)
- Cross Site Scripting (XSS)
- Insecure Direct Object References
- Security Misconfiguration
- Sensitive Data Exposure
- Missing Function Level Access Control
- Cross Site Request Forgery (CSRF)
- Using Components with Known Vulnerabilities
- Unvalidated Redirects and Forwards
Penetration Test
- To identify:
- Common Holes in Web
- Bad Password
- Directory Traversal
- Old Directory/Folder
- SQL/MySQL injection
- Blind SQL/ MySQL injection – Cross site scripting
- Cross site forgery
- Bad Configuration
- CGI-BIN Exploit & etc.
- To identify:
- Network Mis-configuration
- Open Port In Client Network – Unknown Port
- Weird Connections
- Firewall Configurations & etc.
Server Security Assessment
- to identify:
- Weak Server Configuration
- Weak Password Implementation
- Unpatched services
- Old Account
- Unused account
- Possible Denial of Service (DOS/DDOS) & etc.
Database Security Assessment
- to identify:
- SQL/MySQL/Oracle/MS Access/Postgres
- Default configuration (setting & setup)
- Connection settings
- Database settings
- User Account settings & etc.