We engaged Cobalt to perform a penetration test on a small application, including some API testing. Our experience was very positive. Their team was professional and conducted thorough manual security testing tailored to our specific business use case. They...
Testers mostly ran automated tools without carefully checking results, and did not tailor the test according to our brief. Testing was very surface level and barely touched any application business logic.
Have been using for some time. Very impressed with the automated penetration testing. Came from using a vulnerability scanner but hard to demonstrate to customers why a vulnerability is bad until you can use it and show your results. Reporting is very...
Some of the most important findings like a password of "Spring2020" are buried in the narrative instead of presented with the vulnerabilities. The scanner doesn't seem particularly advanced or in-depth. If your organization keeps a good inventory and...
We engaged Cobalt to perform a penetration test on a small application, including some API testing. Our experience was very positive. Their team was professional and conducted thorough manual security testing tailored to our specific business use case. They...
Have been using for some time. Very impressed with the automated penetration testing. Came from using a vulnerability scanner but hard to demonstrate to customers why a vulnerability is bad until you can use it and show your results. Reporting is very...
Testers mostly ran automated tools without carefully checking results, and did not tailor the test according to our brief. Testing was very surface level and barely touched any application business logic.
Some of the most important findings like a password of "Spring2020" are buried in the narrative instead of presented with the vulnerabilities. The scanner doesn't seem particularly advanced or in-depth. If your organization keeps a good inventory and...