Penetration Testing
AI Penetration Test
Web Application Penetration Test
Mobile Application Penetration Test
API Penetration Test
IoT Penetration Test
External Network Penetration Test
Strategic Advisory
Threat Modelling
Bespoke Threat Advisory Service
AI Red Teaming
Adversary Simulation (Red & Purple Teaming)
Knowledge Base
Prices
Company
About Us
Why Us
Partners
Blog
Contact Us

Expert Penetration Testing Services in Sydney | Lean Security

Penetration Testing
AI Penetration Test
Web Application Penetration Test
Mobile Application Penetration Test
API Penetration Test
IoT Penetration Test
External Network Penetration Test
Strategic Advisory
Threat Modelling
Bespoke Threat Advisory Service
AI Red Teaming
Adversary Simulation (Red & Purple Teaming)
Knowledge Base
Prices
Company
About Us
Why Us
Partners
Blog
Contact Us
November 12, 2025
Lean Security Expert
CISA Alert: LANDFALL Spyware Hits Australian ...

A zero-click vulnerability, CVE-2025-21042, in millions of Samsung devices is being actively exploited to install "LANDFALL," a commercial-grade spyware. This threat, now on CISA's KEV catalog , transforms an executive's personal device into a silent corporate surveillance tool, completely bypassing your MDM and EDR. For Australian organisations with BYOD policies, this is a critical, reportable data breach scenario under the NDB scheme.

CISA Alert: LANDFALL Spyware Hits Australian BYOD Devices
October 25, 2025
Lean Security Expert
Beyond the Patch: Why the Actively Exploited ...

Actively exploited WSUS flaw CVE-2025-59287 (CVSS 9.8) threatens Australian businesses. Patching isn't enough. See why red teaming is essential to validate your security.

Beyond the Patch: Why the Actively Exploited WSUS Vulnerability (CVE-2025-59287) Demands a Red Team Response in Australia
October 12, 2025
Lean Security Expert
Oracle EBS Zero-Day CVE-2025-61882: Australian ...

Critical Oracle EBS zero-day CVE-2025-61882 actively exploited. Australian firms face data theft. Move beyond patching to proactive red teaming & security.

Oracle EBS Zero-Day CVE-2025-61882: Australian Threat
September 27, 2025
Lean Security Expert
ACSC HIGH ALERT: Your CI/CD Pipeline is the New ...

The ACSC has issued a high alert on attacks against Australia's software supply chain. Adversaries are no longer just targeting your live systems; they are infiltrating the "factory" where your software is built. We simulate these advanced, multi-stage attacks to validate your defences against this critical threat.

ACSC HIGH ALERT: Your CI/CD Pipeline is the New Frontline. Are You Prepared for a Supply Chain Attack?
September 15, 2025
Lean Security Expert
ACSC ALERT: Is Your SonicWall VPN an Open Door ...

The ACSC confirms the Akira ransomware group is actively exploiting SonicWall VPNs to breach Australian businesses. Patching is not enough—attackers are bypassing the fix. With Australia's new mandatory reporting laws, this technical vulnerability can quickly become a regulatory and legal disaster.

ACSC ALERT: Is Your SonicWall VPN an Open Door for Akira Ransomware in Australia?
Lean Security Expert
August 29, 2025

WAFs Aren’t Enough: Why You Still Need a Web Application Scanning Strategy

Lean Security Expert
August 29, 2025
WAFs Aren’t Enough: Why You Still Need a Web Application Scanning Strategy

WAFs are not a complete security solution. Read this piece to learn why, even with a WAF-managed service, you still need a web application scanning strategy to stay protected.

Comment
Lean Security Expert
August 25, 2025

The True Cost of Skipping Website Penetration Testing

Lean Security Expert
August 25, 2025
The True Cost of Skipping Website Penetration Testing

Discover the financial, legal, and reputational risks of neglecting website penetration testing—and why every business needs a reliable penetration testing service in place.

Comment
Lean Security Expert
August 22, 2025

Managing Web Security Assessment for SaaS Platforms: A 2025 Guide

Lean Security Expert
August 22, 2025
Managing Web Security Assessment for SaaS Platforms: A 2025 Guide

Explore the best practices for managing web security assessment across SaaS platforms with 10 actionable strategies for identifying and resolving vulnerabilities in 2025.

Comment
Lean Security Expert
August 18, 2025

Cloud Infrastructure Testing: Why Your DevOps Pipeline Depends On It

Lean Security Expert
August 18, 2025
Cloud Infrastructure Testing: Why Your DevOps Pipeline Depends On It

Learn how to integrate cloud infrastructure testing into your DevOps pipeline without delays with 10 expert steps from Lean Security’s security testing services.

Comment
Lean Security Expert
August 15, 2025

From Open Source to Secure Code: How to Reduce Risk in Hybrid Dev Environments

Lean Security Expert
August 15, 2025
From Open Source to Secure Code: How to Reduce Risk in Hybrid Dev Environments

Learn how to secure hybrid development environments by highlighting open source software risks, conducting code reviews, and using penetration testing to reduce threats.

Comment
Lean Security Expert
August 11, 2025

Beyond Firewalls: The Role of Application Penetration Testing in Modern Security

Lean Security Expert
August 11, 2025
Beyond Firewalls: The Role of Application Penetration Testing in Modern Security

Learn how application penetration testing enhances security beyond firewalls. Understand the value of penetration testing services in today’s risk-heavy digital world.

Comment
Lean Security Expert
August 8, 2025

The Importance of Cyber Security in Digital Marketing - Infograph

Lean Security Expert
August 8, 2025
The Importance of Cyber Security in Digital Marketing - Infograph

The following infograph shares the importance of cyber security in digital marketing

Comment
Lean Security Expert
August 4, 2025
mobile app security

How To Secure Your Digital Media Accounts - Infograph

Lean Security Expert
August 4, 2025
mobile app security
How To Secure Your Digital Media Accounts - Infograph

The following infograph shares how to secure your digital media accounts:

Comment
Lean Security Expert
October 12, 2021

4 Reasons Why You Should IP Protect Your Medical Devices

Lean Security Expert
October 12, 2021
4 Reasons Why You Should IP Protect Your Medical Devices

Here's your complete guide to why IP protecting medical devices is necessary.

Comment
Lean Security Expert
October 8, 2021

Cyber Security Threats

Lean Security Expert
October 8, 2021

Cyber Security Threats

1 Comment
Newer Posts
Older Posts
Contact us for a quote
Back to Top
Lean Security, 81-83 Campbell Street, Surry Hills, NSW, 2010, Australia+61 (2) 8078 6952info@leansecurity.com.au

About Lean Security

We are a specialist cybersecurity firm based in Sydney, focusing on penetration testing. We partner with organisations across Australia, providing expert-led testing and clear, actionable reports. Our goal is to give you the clarity and confidence needed to secure your digital assets.

     
Useful Links
Home
Application penetration testing
Security source code assessment
Mobile application penetration testing
Infrastructure penetration testing
API web services penetration testing
Threat Modelling Service

Newsletter

We respect your privacy.

Thank you!

Contact Us

Phone: +61 (2) 8078 6952
Email: info@leansecurity.com.au

Monday - Friday from 9.00 am to 8.00 pm
Saturday from 10.00 am to 6.00 pm