Andromeda Systems is a mid-sized IT company specializing in the development of mobile and web applications, as well as the implementation of solutions based on RPA and artificial intelligence. The company’s products help clients automate business processes.
For Andromeda, information security is a strategic priority, as even a single vulnerability in an application can lead to the leakage of sensitive data, posing reputational risks and potential financial losses.
Datami conducted a comprehensive security assessment of the Andromeda Systems mobile application, focusing on the analysis of the IPO file, internal components, and service logic.
The core method was a grey-box pentest. We combined static (SAST) and dynamic (DAST) analysis with reverse engineering, which allowed us to uncover non-standard threats.
Testing was performed both manually and using specialized tools, providing a complete picture of the application’s security posture.
Despite limited input data, the team identified critical threats and provided actionable recommendations to enhance cybersecurity.
As part of the project, Datami conducted a thorough technical assessment of Andromeda’s mobile application, tailoring the approach to the architecture specifics and the characteristics of the provided IPO file.
The main focus was on analyzing security components, including reverse engineering, SAST, DAST, and the verification of application logic.
Every
At the start of the project, the Andromeda application required an in-depth security assessment due to the potential for critical vulnerabilities in data processing logic, authorization, and API interactions.
During the grey-box pentest, which included elements of reverse engineering, the Datami team identified several security issues, including critical and medium-level vulnerabilities that could have led to the leakage of confidential information.
The recommendations covered:
As a result of the testing, the system became significantly more resilient to attacks, the overall risk level was substantially reduced, and the client received a structured report with actionable next steps.
The project was successfully completed within the planned 2-week timeframe — faster than the industry average. The recommendations provided formed the basis for further improvements in the company’s cybersecurity processes.
Thanks to Datami’s testing, Andromeda Systems significantly enhanced the security of its mobile application within just two weeks.
The client gained a clear view of existing threats, achieved a reduced risk level, and received a well-defined action plan for ongoing improvements.
This case study demonstrated that tech companies developing complex digital products require regular security assessments to minimize financial risks and maintain customer trust.
Microsoft announced a new update to Defender for Office 365 that automatically detects and blocks email bombing attacks. The rollout started in June, and most users will receive the feature by mid-July 2025.
Cloudflare reported that it stopped the most powerful UDP flood DDoS attack aimed at exhausting system resources. In 35 seconds, the attackers flooded the company with traffic at 11.5 Tbit/s.
Among internet users, a long-standing myth has taken hold: if a website has the HTTPS mark - that is, a padlock in the address bar and the letter S after “http” - it means the resource is safe and trustworthy. But in reality, the situation is much more co