PEN Consultants Logo
Don’t Be a Victim: Find your weaknesses before the criminals do. PEN Consultants can help!

Year: 2024

2024-05-22

Vulnerability Disclosure Policy

“Whoever brings blessing will be enriched, and one who waters will himself be watered.” (Proverbs 11:25). And yet… sometimes thirsty people just don’t want to drink. That is what it can feel like as a security researcher when you find a security vulnerability but can’t find a way to contact the company to ethically disclose […]

2024-05-19

Automated Pentests

ChatGPT and the growth of impressive AI tools has given rise to a new concept – automated penetration tests. It sounds cool and marketing SEO loves it. But, the truth is that an automated “penetration test” is really just a more advanced vulnerability scan. Can it be valuable? Certainly! In fact, PEN Consultants recommends performing […]

2024-05-16

Price vs Cost

There is a HUGE difference between a pentest’s price and a pentest’s cost. You can easily find “pentests” online for a low price – sometimes as little as $2000. But, those cheap “pentests” often come with a high cost. The methodology of those cheap “pentests” is shoddy and often misses entire classes of vulnerabilities. Those […]

2024-05-13

Ongoing Testing

Is there a book you can read over and over again? For us, it is the Bible. Every time we re-read a section, we find new insights, lessons, and values for our lives. In its own way, security testing is very similar – every time we test, we often find new issues and vulnerabilities. This […]

2024-05-10

Securing WordPress

There’s a 62.8% chance your organization is using WordPress to manage its website if using a CMS (according to wpzoom.com). This market share dominance is one of the reasons it is highly targeted by hackers. Another reason WordPress is targeted and compromised often is relatively poor default security. Here are some tips to secure the […]

2024-05-06

Methodology

This is one of the most common questions we hear from clients during kick-off meetings. Maybe you have heard it or asked it yourself… The question is: What is your pentesting methodology? Most pentesting firms provide vague, high-level answers to this question. We don’t. Not only do we provide a detailed response during the kick-off, […]

2024-05-04

The Hobby Lobby of Pentesting

Come see why we have been called “The Hobby Lobby of Pentesting”. Source: https://youtu.be/zVsvQHiP2tQ VIDEO TRANSCRIPT

2024-05-01

Real-time Transparency

We are certainly no Moses, but even Moses himself knew that people needed to be shown rather than told (Exodus 4:1). That is why we have adopted the same attitude when it comes to our penetration testing. We don’t just tell our clients what we are doing. We show them. We use real-time notes to […]

2024-04-29

No Findings?

Tired of pentesting reports with no real findings? You could be restricting your current vendor too much or you need a new vendor. #FindTheGap We can help! Contact us today: https://PENConsultants.com

2024-04-25

Transparency

Learn about our commitment to Transparency. Our public pricing, detailed service descriptions, and real-time notes provide clients with unprecedented clarity & insight into our processes, ensuring trust, clarity, & insight for our clients every step of the way. Source: https://youtu.be/sALegq1-PDs VIDEO TRANSCRIPT

magnifiercrosschevron-down