Pentest in the Field of Robot-Assisted Process Automation
We tested an RPA software for a customer originating from Germany but now operating globally. The software is a complex platform based on ASP.Net, consisting of multiple sub-platforms that can be distributed individually or as a package. The complexity of the software and the multitude of possible configurations made the test a particular challenge. During two penetration tests, several vulnerabilities - including 2 critical ones - were found and resolved.
Throughout the penetration test (which was conducted on a demo environment), we communicated important findings directly with the technical teams via the "short" route through Slack, so that the production systems could be protected in parallel.