To avoid disruptions in the production system, applications are often examined for vulnerabilities in a test environment. In a pentest project for an international travel agency, this was not possible. So we discussed possible restrictions during the test with the customer in more detail.
We needed to pay special attention to the booking process for special offers, as only certain test bookings could be cancelled free of charge. As an example, only travels from a specific agency should be used during the test; the start of the travel should be some month in the future and the travel identifier should have been in a specific format. After we have collected the IDs of all test bookings we needed to make and sent them to our contact person within a deadline, there have never been any complications in all these years. Especially when we encounter customer-specific testing restrictions, we prefer to take one more manual step than lose sight by involving too many automatic testing tools.
Talk now
to our
Pentest experts.
Contact us
OSCP, M.Sc. Security Management
Talk now to our Pentest experts.
OSCP, M.Sc. Security Management
German Penetration Testing Services for Payment, Healthcare, and Complex System Environments
As the original penetration testing entity, binsec GmbH forms the operational foundation of binsec group GmbH. Since 2013, our permanently employed, highly certified experts (including OSCP, OSCE) have been conducting professional penetration tests based on international standards. With this extensive operational experience in the payment, banking, and healthcare sectors, we assess your business-critical systems from the perspective of advanced attackers.
Specializing in manual analysis, we clearly distinguish our services from automated vulnerability scans: Decisive security vulnerabilities are identified through structured manual analysis. This methodological expertise is also directly integrated into practical pentest training labs via binsec academy GmbH. We tailor the approach precisely to your threat model, utilizing efficient grey-box analysis for maximum transparency and depth. As a result, you receive an audit-ready final report with a clear risk assessment and actionable remediation recommendations.
Request a quote