customer Stories
Services - WindsorBrokers
BESECURE delivers Security Assessment Services WindsorBrokers, an award winning forex broker
Windsor Brokers offers Forex, CFDs, Futures OTC, Binary and GWAZY trading to retail and corporate clients from over 80 countries worldwide. Windsor Brokers Ltd. is licensed and regulated by CySec (Cyprus), EEA authorized by the FCA (UK), registered with the ACPR (France) and BaFin (Germany) and complies with EU regulations. WindsorBrokershas been awarded the 'Best FX Technology 2014’ Award, during the 7th Saudi Money Expo & Conference 2014 and the ‘Best Trading Platform 2014’ award, during the 6th Saudi Money Expo
Customer Challenges
Windsor Brokers is an online forex broker offering trading services to retail and corporate clients from over 80 countries worldwide. Due customer has gained high exposure lately based on publicity of award winning trading platform, GWAZY, was very concerned that can be a target of cyber attacks. GWAZY is a powerful web-based platform that gives streaming real-time data and lightning-fast execution - the same essential features provided by the best desktop applications. Traders can invest in Foreign Exchange, Precious Metals, CFD Indices and CFD Commodities using the simplest trading platform ever created.
Our Solution
External Penetration Testing Service based on BESECURE Penetration Testing Methodology was delivered to evaluate network, system and application controls of its external network perimeter and GWAZY application servers.. It consisted of three phases approach and nine steps assessment. The approach included following three phases:
-
Phase – I: Planning and Preparation
-
Phase – II: Assessment
-
Phase – III: Reporting, Clean-up and Destroy Artifacts
During vulnerability identification, BESECURE assessors performed several activities to detect exploitable weak points and afterwards tried to gain unauthorized access by circumventing the security measures in place . Then tried to elaborate privileges and gain wider level of access as possible. After the completion of all test cases defined in scope of work, a written report describing the detailed results of the tests and reviews was delivered with recommendations for improvement.