
Deep penetration testing of web applications, APIs, and mobile apps — including business logic flaws and chained attack paths.

Focused security assessment of APIs — covering authentication, authorization, input validation, business logic, and data exposure.

Cloud security audit combining hardening with pentesting experience to improve the security posture in your AWS, Azure, or GCP setup.

Security review of Kubernetes and OpenShift platforms covering RBAC, pod security, container images, and benchmark compliance.

Two-phase attack surface mapping using OSINT, service fingerprinting, and CVE analysis to find what's exposed before attackers do.
Low-volume newsletter to announce new trainings, services, and conference talks