Global Intikarya Sejahtera

DEEP DIVE INTO PENTESTING WITH RIDGEBOT

RidgeBot®: Automated Penetration Testing

BUILT FOR ENTERPRISE ENVIRONMENTS - WORKS FOR ANY SIZE BUSINESS

Six Features Differentiate RidgeBot®

Reduce Time-to-Protect
RidgeBot® Pre-Defined RidgeBot® Test Scenario Templates
Full Penetration
This test utilizes various network attack techniques used by hackers. Based on threat intelligence, exploit knowledge base, it profiles assets, mines vulnerabilities and launches attacks toward target assets. Attack targets: Any assets in Intranet, extranet or private network etc.
Ransomeware
This test is packaged with several dozens of commonly used techniques seen in Ransomware attacks. It helps customers quickly validate if their environments are vulnerable to Ransomware attacks or not. And with a remediation plan suggested by the test, the customers can prevent themselves from the Ransomware attacks.
Website Penetration
This test launches cyber attacks against target websites, web applications and all related attack surfaces to gain control of the target website. The attack targets include self-developed or CMS based websites.
Internal Host Penetration
This test launches attacks from inside of corporate network to validate security system’s response toward an internal threat. It uses advanced techniques such as privilege escalation, lateral movement, domain penetration and others. The target of attack includes: all network accessible internal hosts.
Weak Credential Exploit
It launches direct or iterative attacks based on sensitive information collected via weak credential or unauthorized access vulnerabilities. Attack targets include: redis, elasticsearch, ActiveMQ, database, web login and other applications.
3rd Party Framework
It launches privilege escalation and iterative attacks based on known 1-day or n-day vulnerabilities detected onPenetration target the 3rd party framework. Attack targets include: Struts2, spring, fastjson, ThinkPHP and other frameworks.It launches privilege escalation and iterative attacks based on known 1-day or n-day vulnerabilities detected onPenetration target the 3rd party framework. Attack targets include: Struts2, spring, fastjson, ThinkPHP and other frameworks.
Asset Profiling
This test profiles assets and digs out all attack surfaces based on domain names/sub-domain names, peripherals, encryption key, API, framework, open ports etc.
Chat with us
Scan the code
GLOBAL INTIKARYA SEJAHTERA
Hallo, What can I help you with?