Services provided

To assess and enhance the security posture of a national food retailer in the US, Quorum Cyber conducted a comprehensive security evaluation, including:

  • Internal Penetration Testing: Evaluating internal network vulnerabilities to identify potential exploitation paths
  • External Penetration Testing: Assessing external-facing systems to uncover vulnerabilities that could be targeted by external attackers
  • Web Application Assessment: Reviewing web applications for security flaws that could compromise data integrity and user privacy.

Assessing vulnerabilities

The security assessment revealed several critical and high-risk vulnerabilities:

  • Critical Vulnerabilities:
    • The penetration testers identified and exploited a vulnerability that allowed for remote code execution, posing a severe threat to system integrity
    • Another vulnerability was identified that permitted direct access to iSCSI-enabled systems, which could lead to unauthorised data access and manipulation.
  • Medium- and High-Risk Findings:
    • Unsecured protocols, such as Telnet, allowed unauthorised login attempts, exposing the network to potential breaches
    • Access to configuration backups was possible, risking the exposure of sensitive configuration details and system settings
    • The ability to view and manipulate internal cameras was uncovered, highlighting the risk of unauthorised surveillance and privacy breaches.

Resolution and collaboration

To address these findings, Quorum Cyber worked closely with the retailer to develop tailored solutions that effectively mitigated the identified risks:

  • Solution Development: Collaborated with the client to identify and implement right-sized solutions, ensuring each vulnerability was addressed appropriately based on its risk level and impact
  • Security Enhancement: Provided strategic recommendations to improve protocols, secure data access points, and enhance overall network security measures.

Through a thorough assessment and collaborative resolution process, the national food retailer was able to significantly strengthen its security posture, safeguarding its operations and customer data against potential threats. This engagement underscored the importance of proactive security measures and ongoing risk management in the retail industry.

Get in touch if you need help to strengthen your company’s cyber resilience.

Want to know more?

Get in touch to speak to our experts

Ready to talk?

Privacy Preference Center

Skip to content