Home / Security / Pentera

Pentera

Pentera

Offers for this service 0 offers

Every offer for this service at once. Tap a product type to narrow it down — the page address changes, so the link can be shared.

Nobody has listed anything for this service yet. We do not invent prices: a displayed price is a public offer, and it only ever comes from a live seller.

What you will be able to buy

Plans

Pentera Core

  • Internal network testing as full attack chains — from foothold to critical systems
  • Black-box penetration testing with no prior knowledge of the environment
  • A what-if mode assessing the blast radius when an employee credential is already compromised
  • Emulation of known ransomware strains including LockBit, Conti, BlackCat, Maze, REvil and Play
  • Safe offline password-strength assessment for Active Directory
  • OWASP Top 10 testing and checks against the CISA KEV actively-exploited list
  • An attack map mapped to MITRE ATT&CK techniques with root cause analysis
  • Verification that your EDR, XDR, antivirus, SIEM and firewall genuinely fire
  • Executive and compliance reporting

Pentera Surface

  • Testing of the external perimeter — what an attacker sees from the internet
  • Shows how initial access is gained through web applications and internet-facing systems
  • Treats leaked and externally exposed identities as an entry point
  • Discovery of external assets the company may have forgotten about
  • Findings are linked to onward movement into the internal network
  • Works together with Core as one picture from entry to critical data

Pentera Cloud

  • Testing of cloud and hybrid environments against cloud-native attacks
  • Shows how a compromised identity leads to access to sensitive cloud resources
  • Analysis of misconfigurations that open a path to data
  • Attack chains are traced across the boundary between cloud and the corporate network
  • Results flow into the same remediation pipeline as findings from the other modules

Pentera Resolve

  • Prioritisation of validated attack paths — what actually worked comes first
  • Automated remediation instead of manually working through a vulnerability list
  • Re-testing after a fix, confirming the hole is genuinely closed
  • Measurable reduction of exposure rather than a best-guess report
  • Everything is tracked in one system instead of scattered spreadsheets and tickets

Plan contents as published by the vendor; seller prices arrive at launch.

About the service

An automated security validation platform: instead of a once-a-year pentest it continuously replays genuine attacker techniques across your infrastructure and shows which of the findings can actually be used. The internal network is tested as complete chains — how defences get bypassed, how an attacker moves between machines, escalates privileges and reaches critical systems; there is also a what-if mode that assumes an employee credential is already stolen, emulation of known ransomware strains such as LockBit, Conti, BlackCat and Play, safe offline password-strength assessment for Active Directory, OWASP Top 10 testing and checks against the CISA KEV list of actively exploited vulnerabilities. The external perimeter, cloud and hybrid environments are covered by separate modules, and discovered attack paths are visualised on a map mapped to MITRE ATT&CK techniques, then handed to the remediation module which prioritises fixes and re-tests them. Along the way you see whether your EDR, XDR, antivirus, SIEM and firewall actually react to such activity. An AI assistant, Pentera Peer, is embedded across the platform to help work through results and supply context. The vendor has no official pricing page: it sells under contract through its own team and partners, usually annually and sized by asset count, module selection and validation frequency — so confirm the package contents and the volume of assets under test with the seller.

The same from another vendor

More in this category Security