NODUM
ESEN

External perimeter test

We enumerate everything your organisation exposes to the internet and attack it from outside, with no credentials, the way someone who has just found you would.

What it includes

  • Discovery of assets, subdomains and address ranges, including the ones nobody remembers standing up.
  • Review of exposed services, reachable admin panels and backups served by accident.
  • Search for credentials and keys leaked in public repositories and known dumps.
  • Controlled exploitation of what we find, with a proof of concept and without touching production more than necessary.