The penetration tests for CHEQROOM were conducted under our Gray Box testing service.
Their platform is working on AWS infrastructure and there was a heavy focus on API testing.
As a rapidly growing service, the team at CHEQROOM work with companies like Google, Netflix, and VICE. Therefore, they needed to deliver proof of their security to current and prospective clients.
We tested a range of functionalities including:
- Invitation management
- User management
- Inventory management
- Authentication and registration
- SSO & LDAP integration testing
- Subscription Plan management
Results
Through testing, we discovered a number of vulnerabilities which we advised the team at CHEQROOM on. Following their security measures and patching, we conducted sanity and regression tests to ensure that the vulnerabilities were fully secured. With confirmed proof of their security status, they were able to provide proof to clients of their security measures as a USP.