Overview
Smart devices — from building management systems and medical devices to cameras, wearables and industrial sensors — are increasingly connected to corporate networks and the internet. Many ship with debug ports left open, outdated firmware, hard-coded credentials and weak update mechanisms.
Our IoT penetration tests examine the full ecosystem: hardware interfaces such as UART and JTAG, firmware extraction and analysis, radio protocols, local network services, the mobile companion app and the cloud APIs that manage the device.
Whether you build devices or deploy them, we identify how an attacker could compromise a single device, a fleet or the network it sits on.
What's included
Our approach
- ModelUnderstand device architecture and trust boundaries.
- HardwareInspect interfaces and extract firmware.
- AnalyseFirmware, radio and service analysis.
- EcosystemTest apps, APIs and cloud management.
- ReportFindings with engineering-level fixes.
What you receive
- Device threat model
- Hardware and firmware findings
- Radio and app findings
- Cloud/API findings
- Remediation guidance and retest
Standards & frameworks
- OWASP IoT Top 10
- ETSI EN 303 645
- NIST IR 8259
- IEC 62443 (industrial)
- OWASP MASVS (apps)
Frequently asked questions
Do you need physical devices?
Yes, typically two or more units, as hardware testing can be invasive.
Can you test medical or industrial devices?
Yes, with appropriate safety controls and coordination with your engineering teams.
Do you help with IoT security regulations?
Our reports map findings to standards such as ETSI EN 303 645, which underpins several consumer IoT regulations.