Independent security consultancy

We find security flaws that matter — before someone else does.

idacyber is a small security consultancy. We test web apps, APIs, and cloud environments, help your team catch attacks earlier, and report what we find in plain language — with clear steps to reproduce and fix each issue.

What we do

Services

[01] Application Penetration Testing

Hands-on testing of your web apps, mobile apps, and APIs. We focus on the logic flaws, injection bugs, and access-control gaps that scanners miss — and report each one with clear steps to reproduce and fix it.

[02] Defensive Engineering

We help your team catch attacks earlier: writing and tuning detection rules, running threat hunts, and making sure the right things get logged so incidents don't slip by unnoticed.

[03] Cloud Security Architecture & Testing

Security reviews and testing for AWS, Azure, and GCP. We map out identity and access, find misconfigurations, and check that your isolation boundaries actually hold up in practice.

[04] Purple Team & Social Engineering

We run realistic attacks against your environment — including social-engineering exercises built on modern techniques recently seen in the wild — to assess your detection and response capabilities, then work with you to close the gaps and turn the results into targeted awareness.