en

Datami cases

Industries

Case Fraudline: Scheduled Pentest of a Whistleblowing Platform

Case Fraudline: Scheduled Pentest of a Whistleblowing Platform

  • Identified 6 technical vulnerabilities: 5 low-risk and 1 informational
  • Performed additional manual testing of business logic
Services provided:
automated gray-box pentest, audit of secure coding practices, additional manual review of business logic
May 30, 2025
P2P Platform Case Study: Comprehensive Security and GDPR Compliance Audit

P2P Platform Case Study: Comprehensive Security and GDPR Compliance Audit

  • Identified 10 vulnerabilities, including 3 critical ones
  • Improved GDPR compliance and avoided potential financial losses of up to $300,000
Services provided:
Penetration testing, smart contract audit, code security review, testing for SQLi, XSS, and RCE vulnerabilities, OSINT analysis, and cloud infrastructure security assessment
May 27, 2025
Case Study Grindset Software: Payment System Pentest for PCI DSS Compliance

Case Study Grindset Software: Payment System Pentest for PCI DSS Compliance

  • Conducted a black-box penetration test of critical payment system components
  • Discovered 15 vulnerabilities; 5 critical issues were resolved within 48 hours
Services provided:
Black-box penetration testing of the payment system, including assessment of web applications, servers, databases, and communication channels
May 11, 2025
Case Study: DAVITOO UKRAINE – LMS Security Testing Before HIPAA Certification

Case Study: DAVITOO UKRAINE – LMS Security Testing Before HIPAA Certification

  • Completed a full security audit and gray-box penetration test of LMS Collaborator
  • Identified 15 vulnerabilities, including 5 critical issues, resolved within 24 hours
Services provided:
Gray-box penetration testing and security audit of the web platform, containerized environments, and network interactions
May 11, 2025
BookingSync Case Study: API Pentest for Personal Data Protection

BookingSync Case Study: API Pentest for Personal Data Protection

  • Conducted a gray-box pentest of API endpoints
  • Identified several low-level vulnerabilities
Services provided:
Gray-box API pentest using Burp Suite API Scan and manual testing methods
May 11, 2025
Case Study: Consulting Company – Security Testing of Web Resources and Infrastructure

Case Study: Consulting Company – Security Testing of Web Resources and Infrastructure

  • Conducted black-box pentest of two web resources and infrastructure components
  • Identified 19 vulnerabilities: 1 critical, 8 medium, 7 low, and 3 informational
Services provided:
Black-box pentest of two web resources with different domain zones (UA and UK), and assessment of related infrastructure components
May 10, 2025
Case Study: Andromeda Systems – Mobile App Pentest with Reverse Engineering

Case Study: Andromeda Systems – Mobile App Pentest with Reverse Engineering

  • Conducted a grey-box app pentest using SAST, DAST, and reverse engineering
  • Identified critical vulnerabilities that could have led to data leaks; improved resilience to attacks
Services provided:
reverse engineering, full grey-box pentest using SAST, DAST
May 10, 2025
Case Study HIDEEZ: Security Testing of Encryption and Authentication Before Product Release

Case Study HIDEEZ: Security Testing of Encryption and Authentication Before Product Release

  • Conducted a white-box pentest of cryptography and authentication mechanisms
  • Identified 6 vulnerabilities: 1 critical, 2 medium, 3 low
Services provided:
White-box penetration testing with source code analysis of encryption and authentication modules; static code analysis (SAST) and dynamic application security testing (DAST), aligned with OWASP ASVS best practices
May 10, 2025
Case Study: Comprehensive Security Assessment for a Large Financial Institution

Case Study: Comprehensive Security Assessment for a Large Financial Institution

  • Pentest and Code Review were conducted for digital services
  • 106 vulnerabilities were identified, including a DoS attack threat targeting the call center.
Services provided:
Security Code Review, Penetration Testing (Black-box and Gray-box) of web portals, mobile applications, APIs, POS terminals, and parts of the internal network;
May 10, 2025
Order a free consulidation
We value your privacy
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies. Cookie policy