SECURITY SERVICE

PENETRATION TESTING

滲透測試(PT)

Authorised, controlled and clearly scoped testing to validate whether weaknesses can be exploited.

Scope, timing, technical limits and reporting procedures are agreed before testing begins.

ASSESSMENT SCOPE

01

Web Applications and APIs

Test authentication, authorisation, input handling, business logic and data-leakage risk.

02

Mobile Applications

Assess client-side behaviour, APIs, storage and transport security.

03

Network and Infrastructure

Identify exposed services, configuration gaps and potential attack paths.

04

Reporting and Retest

Provide risk ratings, evidence, remediation guidance and agreed retesting.

Need to clarify the assessment scope?

Talk to Us