Overview
Wireless networks are a physical-world entry point that many security programmes overlook. Weak pre-shared keys, misconfigured enterprise authentication, rogue access points and poorly isolated guest networks can all give attackers a foothold without ever touching your internet perimeter.
Our WiFi penetration tests assess the encryption and authentication of your corporate and guest networks, attempt credential capture through evil-twin attacks, search for rogue access points, test client isolation, and — where a foothold is gained — show what internal systems are reachable.
Testing can be delivered on site or using a remote wireless testing kit shipped to your location.
What's included
Our approach
- SurveyMap SSIDs, access points and coverage.
- AssessTest encryption and authentication configuration.
- AttackAttempt credential capture and network access.
- PivotAssess reachability of internal systems.
- ReportFindings with configuration fixes.
What you receive
- Wireless network inventory
- Rogue AP findings
- Authentication and encryption findings
- Segmentation test results
- Remediation guidance and retest
Standards & frameworks
- PTES
- NIST SP 800-153
- PCI DSS 11.2 (wireless)
- CIS Controls 12
Frequently asked questions
Does WiFi testing require someone on site?
Not always. We can ship a pre-configured remote testing device for many engagements.
Will testing disconnect our users?
We avoid disruptive techniques unless agreed; any deauthentication testing is done in controlled windows.
Does PCI DSS require wireless testing?
PCI DSS requires processes to detect and identify authorised and unauthorised wireless access points, typically at least quarterly.