Web application penetration test
We can detect and prove the full business impact of a wide range of common web vulnerabilities.
- Analysis and Inspection of Web Applications.
- evaluation of the vulnerability of web applications.
- Testing the security of web services.
- human exploitation.
- Our team uses Burp Suite and ZAP software.
Common attack types include:
- Cross-site scripting (XSS)
- SQL injection (SQLi)
- Attacks that cause a denial of service (DoS) or distributed denial of service (DDoS)
- Cross-site request forgery (CSRF)
- Server-side request forgery (SSRF)
- Server-side template injection (SSTI)
- Local file inclusion (LFI) and remote file inclusion (RFI)
- Command injection
- Insecure Direct Object References (IDOR)
- XML External Entity Injection (XXE)
- Race conditions
- And more...