Case studies

Real engagements. Measurable outcomes.

Anonymised highlights from recent client work — and a downloadable sample report so you know exactly what you're getting.

Fintech (UK, Series C)

Pentest
API

Eliminating IDOR exposure across a payments API

Discovered a chained IDOR + auth bypass enabling unauthorised wire transfers. Re-architected authorisation layer with our team.

Before
12 critical, 28 high
After
0 critical, 2 medium

DeFi Protocol (US)

Smart Contract
DeFi

Pre-mainnet audit of a $40M lending vault

Manual Solidity audit + Foundry invariant suite uncovered an oracle manipulation path that would have drained the vault on day one.

Before
5 high-severity logic flaws
After
Clean re-test, mainnet shipped

SaaS (Singapore)

Compliance
SOC 2

SOC 2 Type II readiness in 11 weeks

Designed control library, wrote policies, ran evidence collection, and walked the team through external auditor cycles.

Before
23 control gaps
After
Clean Type II report

Healthcare (EU)

Cloud
AWS

Cloud posture hardening across 6 AWS accounts

IAM blast-radius reduced 80%. Implemented continuous drift detection with auto-remediation.

Before
47 high-risk misconfigs
After
98% CIS compliance

See exactly what we deliver

Download an anonymised sample audit report (PDF, 18 pages).

Request yours