What can be revealed in a grey box test?

What can be revealed in a grey box test?

The purpose of grey box testing is to look for vulnerabilities resulting from improper design or improper use of applications. The grey box test is a combination of white box and black box testing. With this method, we most often examine applications and networks...
The Red Team is attacking!

The Red Team is attacking!

The red team is a team of external experts who usually carry out real attacks on IT systems at the request of senior management without the knowledge of the IT department. In attacks, “everything is worthwhile” that does not threaten the collapse of the...
Source code review: Why and When? Is it really important?

Source code review: Why and When? Is it really important?

Source code review is a software quality assurance activity in which experts verify a program primarily by analyzing its source code. At least one of the reviewers must not be the author of the source code.It looks obscure from outsideOne of the most important areas...
Assessment after data breach: is it mustard after meat?

Assessment after data breach: is it mustard after meat?

Intrusion into corporate networks has become common, and unfortunately, in most cases, stakeholders only realize it too late. What can you do if you are hacked? How can we prevent another malicious intrusion?Intrusion is rather commonPerhaps the most important...
The external vulnerability assessment and the Black-box approach

The external vulnerability assessment and the Black-box approach

Have you ever wondered how hackers see your external network? What is visible from the outside? Are they able to find vulnerable points? The answer for these questions is an external vulnerability assessment with a Black-box approach. The Black-box assessment is a...
Protection against Ransomware

Protection against Ransomware

In Information Technology such vulnerabilities appear from time to time that can cause extremely serious damages in case they are exploited. This exposure is exponentially increasing as ever-growing part of the business is moving into cyberspace. It is no coincidence...
Privilege Escalation and Home Office

Privilege Escalation and Home Office

Working from home may reveal the flaws of applications and processes in use so double-checking the access controls and privilege escalation possibility is highly recommended. Web applications are more popular than ever, people prefer working remotely from home instead...
The applications that we deliver are safe and secure!

The applications that we deliver are safe and secure!

What would happen if a deadline was approaching and it suddenly turned out that principal safety regulations have not been met, and the hardware components have well documented vulnerabilities that are easy to exploit? Most likely the entire project would need to be...
We use no WiFi, thus we’ve hedged against being hacked for sure!

We use no WiFi, thus we’ve hedged against being hacked for sure!

When employees demand wireless coverage in the office, they mean it. A lack of WiFi coverage monitoring within the business quarters could lead to a tangle of rogue access points installed by employees throughout the building. Or, even worse, staff could connect to...
If our systems had been hacked we would surely know about it

If our systems had been hacked we would surely know about it

The truth is that a talented enough hacker would leave hardly any noticable trail. In fact, malicious attackers could come and go at ease at the borders of the corporate network, reconfigure services and open backdoors for ease of passage, and may even manage to...