Prepared on-site appliance
The AEGYS appliance provides the technical basis for testing in your environment. Together, we define where it is connected and which approved areas should be tested from there.
AUTONOMOUS PENTEST
AEGYS uses autonomous pentest technology to examine which weaknesses can be chained into exploitable attack paths. You receive traceable results and guidance on which measures to address first.
A single misconfiguration does not explain how far an attacker could get. The autonomous test examines whether reachable systems, permissions, and exploitable weaknesses can be chained into an attack path.
Which entry point works within the agreed scope?
Which further systems or permissions become reachable from there?
Which change can interrupt the path that was found?
The test covers the agreed scope. It does not promise to identify every conceivable attack path.
The AEGYS appliance provides the technical basis for testing in your environment. Together, we define where it is connected and which approved areas should be tested from there.
If suitable virtual infrastructure is available, the test component can be deployed there. An additional physical appliance is not required. We agree network access and technical prerequisites in advance.
A suitable cloud environment may also be used as a deployment location. What matters is which systems the test should and is permitted to reach.
The AEGYS appliance is designed as an extensible platform. In addition to the pentest, it can host other suitable applications, allowing the existing technical foundation to support additional tasks.
We agree which extensions fit your deployment based on the required functions and available resources.
We agree the systems to be tested, the test perspective, exclusions, and the time window. Testing starts after the agreed approval.
The test component is deployed through the appliance or virtually. The software examines the approved environment and follows exploitable attack paths.
The paths found and their impact are presented in a traceable way. The results help your team prioritize measures.
After changes have been made, another test can determine whether the previously found paths still work. We agree the scope of verification for the engagement.

A specific suspicion is not required. Tests can be performed once or at an agreed cadence; recurring tests are separate approved tests, not uninterrupted active attacks.
You want to understand which attack paths actually work under the agreed conditions.
After changes to infrastructure or permissions, you want to examine their effect on possible attack paths.
After remediation, you want to know whether previously found paths have been closed.
AEGYS uses established autonomous pentest technology to run the tests. AEGYS agrees the deployment and engagement parameters with you. The support and analysis included in the engagement are defined in advance.
Autonomous means that the software performs the technical test steps independently. Coordination, approval, interpretation, and remediation remain the responsibility of the people involved.
The deployment location alone does not determine where all data is processed. The specific deployment and processing configuration is agreed for the engagement.
Let us discuss what you want to test and which deployment fits.
Discuss your pentest