Well anything & everything! All I really know is that I know nothing. As I said, this is an org that deals with vulnerable people looking to expand their presence via social media, website, and want to protect clients details etc. It’s in some ways “innocents abroad”.
I’d need to check more details but further info I’d prefer PM if that would be OK?
Sure, pm and I’ll reply tomorrow. Pen test is a test in point of time and only a small subset of security, often done purely for audit purposes. You can get the likes of Ward to do one for 5k with open source tools and a report on findings but they’re harmless enough. Proper ones are 10-20k.
Cheers. Yeah I wondered whether it would be “you’re vulnerable here and there” Tha’ll be £xk. Or you’re vulnerable here and here and we’ll fix it for £xxk
Will PM tomorrow as need to go over documentation again.
It depends on what tools they’re using. As I said, open source stuff like nmap will be cheap but if they use a product like qualys, a single use license is 10k.