Penetration Testing
AI Penetration Test
Web Application Penetration Test
Mobile Application Penetration Test
API Penetration Test
IoT Penetration Test
External Network Penetration Test
Penetration Testing as a Service (PTaaS)
Strategic Advisory
Threat Modelling
Bespoke Threat Advisory Service
AI Red Teaming
Adversary Simulation (Red & Purple Teaming)
Executive Cyber Warfare Simulation & Incident Response Testing
Virtual CISO (vCISO) Services
Knowledge Base
Prices
Company
About Us
Why Us
Partners
Blog
Contact Us

Lean Security

Penetration Testing
AI Penetration Test
Web Application Penetration Test
Mobile Application Penetration Test
API Penetration Test
IoT Penetration Test
External Network Penetration Test
Penetration Testing as a Service (PTaaS)
Strategic Advisory
Threat Modelling
Bespoke Threat Advisory Service
AI Red Teaming
Adversary Simulation (Red & Purple Teaming)
Executive Cyber Warfare Simulation & Incident Response Testing
Virtual CISO (vCISO) Services
Knowledge Base
Prices
Company
About Us
Why Us
Partners
Blog
Contact Us
April 3, 2026
Pen Testing
Lean Security Expert
The 2026 Shift from Annual Compliance to ...

Upgrade from annual pen tests to continuous penetration testing services in Australia. Discover 2026 red teaming trends, PTaaS, and expert security assessments.

The 2026 Shift from Annual Compliance to Continuous Penetration Testing and Red Teaming in Australia
March 1, 2026
Lean Security Expert
Cisco SD-WAN Zero-Day (CVE-2026-20127): Deep ...

Discover how threat actors exploit the critical CVE-2026-20127 Cisco SD-WAN vulnerability. Learn IoCs, remediation steps, and how penetration testing secures your network.

Cisco SD-WAN Zero-Day (CVE-2026-20127): Deep Dive & Fix
January 11, 2026
Lean Security Expert
The ToolShell Crisis: Why Your SharePoint ...

The Australian Cyber Security Centre has issued urgent warnings about actively exploited vulnerabilities in Microsoft SharePoint Server (CVE-2025-53770) that enable unauthenticated remote code execution. With Chinese state-aligned actors and ransomware groups already compromising Australian organisations, this threat represents an immediate and severe risk to business-critical data and infrastructure.

The ToolShell Crisis: Why Your SharePoint Server Is a Ticking Time Bomb
December 27, 2025
Lean Security Expert
Why Long-Lived Cloud Credentials Are Your ...

Across AWS, Google Cloud, and Microsoft Azure environments in Australia and globally, 59% of IAM users maintain access keys that have never expired—credentials that have been active for more than one year. These long-lived credentials represent a silent but catastrophic vulnerability in your cloud infrastructure. This blog explores why long-lived credentials have become the primary attack vector for identity-based breaches, how red teams exploit them during penetration tests, and what you must do today to eliminate this ticking time bomb.

Why Long-Lived Cloud Credentials Are Your Biggest Identity Risk in 2025
December 21, 2025
Lean Security Expert
Fortinet "Ghost Logins": How Authentication ...

Critical authentication bypass vulnerabilities in Fortinet FortiGate and related products (CVE-2025-59718 and CVE-2025-59719) are now under active attack, allowing "ghost" SSO logins that completely sidestep normal controls and logs. For Australian organisations, this is more than a VPN or firewall problem – it is a board-level exposure that directly tests whether your external penetration testing, internal penetration testing, and red team assessment services are capable of simulating SSO abuse, identity takeovers, and lateral movement across hybrid networks.

Fortinet "Ghost Logins": How Authentication Bypass Attacks Expose Gaps in Your Penetration Testing Strategy
Lean Security Expert
June 2, 2019

Why You Should Include QA in Your Web App Development Process

Lean Security Expert
June 2, 2019
Why You Should Include QA in Your Web App Development Process

I’s extremely important for every business owner to make sure that their web app is up to date.

How can you ensure that? The answer to this question is simple: through quality assurance.

Comment
Lean Security Expert
May 30, 2019

6 Necessary Security Software for Small Businesses

Lean Security Expert
May 30, 2019
6 Necessary Security Software for Small Businesses

To help you fortify the security of your system, we present to you six necessary security software that you must invest in!.

Comment
Lean Security Expert
May 26, 2019

4 Mobile Application Development Mistakes to Avoid

Lean Security Expert
May 26, 2019
4 Mobile Application Development Mistakes to Avoid

To prevent this from happening, you should make sure you avoid making these mistakes in your mobile application development process.

Comment
Lean Security Expert
May 24, 2019

The Impact of Data Breaches on Customer Loyalty

Lean Security Expert
May 24, 2019
The Impact of Data Breaches on Customer Loyalty

Theft of critical information, damage to property, disruption of operations and most importantly, could lead to loss of customer loyalty. Here’s why

Comment
Lean Security Expert
May 21, 2019

Benefits of Using A Managed Security Service Provider - Infographic

Lean Security Expert
May 21, 2019
Benefits of Using A Managed Security Service Provider - Infographic

Let’s take a look at a few benefits of using a managed securing service provider.

Comment
Lean Security Expert
April 30, 2019

Top 4 Cyber Security Details New Employees Should Be Aware Of

Lean Security Expert
April 30, 2019
Top 4 Cyber Security Details New Employees Should Be Aware Of

Let’s dive in to top 4 cyber security details new employees should be aware of in order to reduce the chances of cyber perpetration.

Comment
Lean Security Expert
April 29, 2019

The Impact Data of Breaches on Customer Loyalty (Infographic)

Lean Security Expert
April 29, 2019
The Impact Data of Breaches on Customer Loyalty (Infographic)

64% of consumers worldwide are most likely to stop shopping from a business that had its security breached. Read what are the impact of data breaches on customer loyalty.

Comment
Lean Security Expert
April 27, 2019

Proactive Risk Management-Making Your Business Resilient

Lean Security Expert
April 27, 2019
Proactive Risk Management-Making Your Business Resilient

Read how adopting a proactive risk management approach allows an organization to avoid and manage risks, making your business resilient to cope with an outside attack.

1 Comment
Lean Security Expert
April 24, 2019

Cybersecurity vs. Data Privacy – What’s The Difference?

Lean Security Expert
April 24, 2019
Cybersecurity vs. Data Privacy – What’s The Difference?

Let’ see what’s the difference between Cybersecurity vs. Data Privacy

Comment
Lean Security Expert
April 20, 2019

Latest Malwares in 2019 That Pose a Threat to Your Data Security

Lean Security Expert
April 20, 2019
Latest Malwares in 2019 That Pose a Threat to Your Data Security

it’s imperative that you familiarise yourself with the latest malwares that pose a threat to your data security. Let’s see what are the latest malwares in 2019 that pose a threat to your data security.

Comment
Newer Posts
Older Posts
Contact us for a quote
Back to Top
Lean Security, 81-83 Campbell Street, Surry Hills, NSW, 2010, Australia+61 (2) 8078 6952info@leansecurity.com.au

About Lean Security

We are a specialist cybersecurity firm based in Sydney, focusing on penetration testing. We partner with organisations across Australia, providing expert-led testing and clear, actionable reports. Our goal is to give you the clarity and confidence needed to secure your digital assets.

     
Useful Links
Home
Application penetration testing
Security source code assessment
Mobile application penetration testing
Infrastructure penetration testing
API web services penetration testing
Threat Modelling Service

Newsletter

We respect your privacy.

Thank you!

Contact Us

Phone: +61 (2) 8078 6952
Email: info@leansecurity.com.au

Monday - Friday from 9.00 am to 8.00 pm
Saturday from 10.00 am to 6.00 pm