binsec.tools – WebCompScan

WebCompScan from binsec.tools enables you to identify the technologies used on websites and check whether they are outdated or vulnerable. The technologies that the WebCompScan tool can detect include CMS systems, web servers, programming languages, JavaScript libraries, and also payment methods offered. To detect the technologies, it uses open source databases with regex patterns. The … [Read more…]

Requirements for penetration tests according to ISO IEC 81001-5-1

The IEC 81001-5-1 defines requirements for the life cycle of the development and maintenance regarding healthcare applications and information technology within medical devices. To achieve this, the standard sets requirements for various processes in the life cycle of a medical device and is primarily divided into the following requirement categories. Within the software development process … [Read more…]

Penetration Test according to MDR (Medical Device Regulation)

In Annex I, for “devices that incorporate electronic programmable systems and software that are devices in themselves”, the MDR requires verification and validation under point 17.2 that the product or software was developed according to the state of the art – from the perspective of the IT security: For devices that incorporate software or for … [Read more…]

Penetration Test Requirements of Microsoft 365 App Compliance Program

Participating in the Microsoft 365 Certification App Compliance Program for Microsoft Teams applications, Sharepoint Apps/Add-ins, Office Add-ins and WebApps requires performing a penetration test. In the Initial Document Submission a company needs to submit supporting documentation and evidence. Besides other topics, a Penetration Testing Report is required. A penetration testing report completed within the last … [Read more…]

Better Pentesting – No Bullshit

Actually it should have been called BETTER PENTESTING – NO BULLSHIT, considering the advertising and sales promises of many pentesting providers. Somewhat less brutal it became BETTER PENTESTING – NO NONSENSE as the new advertising slogan for pentesting of binsec GmbH. Advertisement: “We find all vulnerabilities!” Statement: “We perform penetration tests with Nessus.” A pentest … [Read more…]

Enterprise Security Magazine Europe: binsec recognized as one of the top Cyber Security Solution Providers

Today I received a very nice mail from Gloria with Enterprise Security Magazine Europe, telling me that binsec is recognized as one of the top Cyber Security Solution Providers. Hi Patrick, I am Gloria Lam with Enterprise Security Magazine Europe. I am excited to inform you that our magazine’s evaluation panel has shortlisted binsec to … [Read more…]