Do you know where your weak spots are?
We examine your IT security thoroughly and deliver a clear report with concrete measures, from the external attack surface to the internal configuration.
Attacks are more effective than ever – we know them from the inside
Cyberattacks today run automated and intelligent: AI generates deceptively real phishing emails, scans relentlessly for weaknesses and adapts attacks in real time. No more script kiddies, but scaling systems. We know this technology from the inside because we work with it ourselves, and therefore know exactly how to defend against it.
Whether external attack surface, internal configuration or the human in front of the screen: we examine your IT security thoroughly and deliver a report you can act on immediately. Security is not a feature for us, it is a founding principle.
Our services
Security Check
Analysis of your public attack surface: open ports, outdated services, DNS configuration, email security (SPF/DKIM/DMARC), TLS certificates. Result: a report with a traffic-light rating and concrete recommendations.
Security Audit
A thorough analysis of your infrastructure, configurations and processes. With insight into your systems, we check whether everything is set up securely: patch levels, access rights, architecture and internal workflows. The scope is defined together in advance.
Penetration Test
Manual pentest following OWASP/PTES. A controlled attack on your systems from the perspective of a real attacker. Optionally extended with social engineering and phishing simulation. Fully documented, with a prioritised list of measures.
OSINT Research
You do not know who is behind it? Using legal open-source intelligence we turn "unknown" into a name and compile a court-usable file your lawyer can work with.
All prices are exclusive of VAT. OSINT transparency note: not every anonymous account can be identified. If identification is unrealistic, we tell you clearly and directly after the initial assessment.
Frequently asked questions
What is the difference between a security check and a penetration test?
The security check examines your publicly visible attack surface from the outside, quickly and cost-effectively. A penetration test goes deeper: we attack in a controlled, manual way, like a real attacker, and uncover weaknesses that are not immediately visible from the outside.
How does an OSINT investigation work?
We start with an initial assessment (1 hour, 150 €) and give an honest forecast of whether usable traces exist. With a positive forecast we research on an hourly basis with an agreed limit. The initial assessment fee is credited when you commission the full research.
Do I get an understandable report?
Yes. Every report contains a traffic-light rating and concrete, prioritised recommendations, without jargon. Afterwards you know exactly what to do and in which order.
Sensitive matter? You can reach us encrypted via PGP at security@purplebase.de – see Secure contact for details.
Ready for a security check?
Write to us and we will find out where your weak spots are. Factual, without sales pressure.
Get in touch