Pentest & Red Team

Assess the Real Security of Your Systems

Our offensive security experts test your infrastructure, applications, and people the way a real attacker would — so you find your vulnerabilities before someone else does. 

Why Test Your Systems Before an Attacker Does ?

Cyber exposure has become a structural reality for every organization. A Swiss company today faces several hundred attack attempts per week, and the average cost of a cyber incident runs into the hundreds of thousands of francs — or far more for larger organizations.

Given this reality, assessing your real cybersecurity maturity is no longer optional: it’s a prerequisite for any certification process (ISO 27001), regulatory compliance, or simply serious risk management. A penetration test (pentest) is one of the most concrete ways to get that assessment: it doesn’t just list theoretical flaws — it demonstrates what an attacker could actually do with your environment.

An Offensive Approach Grounded in Real-World Experience

Our Pentest, Red Team, and Social Engineering services are built on recognized frameworks (OWASP, MITRE ATT&CK & Shield, NIST, OSSTMM) and a deliberately manual, in-depth methodology rather than a purely automated one: tools accelerate detection, but every vulnerability is validated by an expert to eliminate false positives and assess risk in its real context.

Our difference: we also operate a managed security center (AT-Defense SOC). This lets us bring into our tests the techniques, tactics, and tools we actually observe among real attackers — not just theoretical scenarios.

A Test Suited to Every Objective

Pentest

Provides a snapshot of your systems’ security at a given point in time. We look for vulnerabilities and misconfigurations, document how they could be exploited, and provide concrete recommendations. If a critical vulnerability is found, you’re notified immediately — before the full report is even delivered.

Blackbox

We start with no prior information, just like a real external attacker. Only a scope (IPs, URLs) is required from you. We combine active and passive reconnaissance to identify what an attacker could discover and exploit — including sensitive information already exposed online.

Greybox

We test with limited access (a non-privileged user account, API documentation), simulating a malicious user or a compromised account. This approach is particularly suited to applications already in production.

Whitebox

We test with full access (source code, documentation, privileged accounts), to identify the maximum number of vulnerabilities within a given time frame — ideal for sensitive internal systems.

Social Engineering

Targets the human factor: phishing campaigns, malicious phone calls, physical access attempts. The goal is to assess the real cybersecurity maturity of your staff — often the preferred entry point for targeted attacks.

Red Team

A full engagement that emulates a real threat actor targeting your organization, combining offensive techniques and social engineering. An excellent way to train your defensive teams (SOC, Blue Team) and assess your actual detection capability.

Custom Services

Credential leak analysis on the web, mapping of your public exposure, tailor-made scenarios — contact us for any security assessment that doesn’t fit exactly in the previous formats.

A Structured, Five-Step Methodology

  1. Passive information gathering — reconnaissance with no direct interaction with your systems (public sources, social networks, data leaks)
  2. Active information gathering — mapping of exposed services and their configuration
  3. Vulnerability research — targeted tests based on service type, aligned with industry frameworks (OWASP Top 10)
  4. Exploitation — concrete demonstration of a vulnerability’s real-world impact, with prior client approval if there’s any risk to production systems
  5. Reporting and recommendations — complete documentation, prioritized by risk, impact, and likelihood

Every identified vulnerability is reviewed by an expert to confirm its reality and context.

Confidentiality, Controlled Risk, and Rigor

  • Data hosted and processed in Switzerland — all sensitive information collected stays confidential and local
  • Controlled testing — denial-of-service attacks are not tested by default; emergency contact points are established on both sides before testing begins
  • Redacted reporting — sensitive credentials or personal data are removed from our deliverables
  • Systematic cleanup after each engagement (removal of access and tools deployed during testing)
  • Four-eyes quality control on every report before delivery

Recognized Expertise in Offensive Security

Our Red Team is multidisciplinary, with team members ranging from 5 years to over 12 years of experience in Pentest and Red Teaming.

Vulnerability research and responsible disclosure

Several CVEs published with vendors such as Microsoft, F5, and VMware

Recognized contributions

Participation in the MITRE ATT&CK framework, publications featured in reference works in the field

Areas of expertise

Internal and external penetration testing, web application security, social engineering, reverse engineering, wireless technologies, configuration auditing

Frameworks applied

OWASP, NIST, MITRE ATT&CK, OSSTMM, PCI-DSS

Pourquoi choisir PurpleScan :

  • Manual, in-depth methodology — not just an automated scan
  • Immediate alert if a critical vulnerability is discovered during testing
  • Powered by real SOC experience — we test using techniques observed among real attackers
  • Data processed in Switzerland, with testing conducted to avoid impacting your operations
  • Post-test support: debriefing, remediation guidance, optional verification testing
  • Broad scope: infrastructure, web applications, human factor, up to full Red Team engagements.

Tarifs et devis

Every pentest engagement is scoped individually, based on what needs to be covered (number of systems, applications, type of engagement) and the depth required. A quote is prepared following a scoping discussion with our experts, systematically including a kickoff session, the testing phase, the execution report, and a debriefing session.

e-Xpert Solutions SA  – Genève

Chemin du Pont-du-Centenaire 109
CH-1228 Plan-les-Ouates / Geneva

+41 22 727 05 55
Support: +41 22 727 05 56
Under Attack: +41 22 727 05 45

e-Xpert Solutions SA  – LAUSANNE

Avenue de Gratta-Paille 20
CH-1018 / Lausanne

+41 21 802 26 78
Support: +41 22 727 05 56
Under Attack: +41 22 727 05 45

fr_FR