SERVICES / SOCIAL ENGINEERING

Social engineering

Every company has people, and people answer email. We test that entry the way a real adversary does — politely, within signed rules, and with a debrief that blames the process, never the person.

WHAT WE TEST
·Phishing campaigns under signed authorization
·Vishing and pretext calls
·OSINT of the organisational footprint
·Payload-less click measurement
·No-blame awareness debrief
BOOKED AS
Extension to any engagement
2–4 days · scoped on the call

Also available inside Basalt Recon as the people-entry path.

Book a scoping call
EVERY ENGAGEMENT

Signed authorization first · public standards (PTES, OWASP, NIST, ATT&CK) · report reviewed by a second engineer · retest within 30 days included · your data destroyed in 30 days · late report = 10% off, in the contract.