Identified vulnerabilities
0E-commerce store
Critical risks have been eliminated
0Incidents after changes
0
About the client
Ukrainian e-commerce platform with thousands of active users and integrated payment services. The company processes personal data of customers, order history and financial information.

What problem did the client have?
The client's team was preparing to scale the platform and wanted to ensure that the web application was free of critical risks to business and customer data.
Internal audits revealed suspicious authorization and access control issues, which required an independent security audit.

Scope of work
Web application
The user's personal account, shopping cart, ordering and administrative panel
API
Analysis of interaction with payment services, banking systems and external partners
Infrastructure
Server configuration, access and network settings
Payment integrations
Scenarios of payment and processing of financial transactions
How we solved the problem
- [0.1]Network and server infrastructure protection
- [0.2]Performed penetration testing
- [0.3]A technical report was prepared
- [0.4]Helped the team implement fixes
- [0.5]Repeated testing was conducted

Customer feedback
“The SafeNet Cyber team helped identify issues that we didn't see during our internal audits. The report was clear and the recommendations made it possible to quickly strengthen the security of the platform.”

CTO, E-commerce platform