Ready to strengthen your defenses?
CLIENT
Confidential
SERVICE
Penetration Testing
INDUSTRY
Consulting
YEAR
2024
Problem
Solution
Key results
Identified an unmonitored office zone containing a vulnerable embedded device
Performed successful firmware extraction and analysis from physical hardware
Recovered plaintext LDAP account credentials from device storage
Determined that the recovered account had domain-level administrative privileges
Demonstrated end-to-end compromise path from physical device → internal network → Active Directory admin
Client: Confidential
SERVICE
Penetration Testing
YEAR
2025
Fortuna conducted an on-site office penetration test to see if an attacker could access the client's enterprise network via physical or wireless weaknesses.
Client: Confidential
SERVICE
Penetration Testing
YEAR
2025
A mid-sized consulting firm hired Fortuna to test if limited VPN access could be leveraged to exploit internal apps and escalate privileges in Active Directory.