HackingByte

HackingByte HackingByte — senior-led pe*******on testing, red teaming, GRC advisory, and security assessments. hackingbyte.com Operated by HackingByte S.A.R.L.

Three-Artifact Model: technical report + executive risk brief + action plan. HackingByte is a senior-led cybersecurity firm based in Casablanca, working with
clients across Morocco, Europe, the UK, and the wider region. What we do:
- Pe*******on testing — external, internal, web / API, mobile, cloud.
- Red teaming and adversary simulation — objective-based, multi-vector, kill-chain
narrative.
-

GRC advisory — ISO 27001, SOC 2, NIS 2, DORA, GDPR readiness; fractional CISO.
- Security assessments — risk assessments, security architecture review, cloud
posture, incident-response readiness, M&A cyber due diligence. How we work:
- The consultant who scopes the engagement is the consultant who delivers it.
- Engagement-band pricing tied to scope, not day rates.
- Methodology and standards basis named in the SOW and in the report (PTES, OWASP
WSTG, OWASP API Top 10, OWASP MASVS, MITRE ATT&CK, CIS Benchmarks, TIBER-EU
principles where applicable, ISO 27001, SOC 2, NIS 2, DORA, GDPR).
- Every engagement produces three artefacts from the same body of work: a technical
report for engineers, an executive risk brief for the board, and an action plan
with named owners and due dates.
- Critical findings escalate within four working hours of discovery.
- Findings scored against business risk, not only CVSS. What we don't do:
- We don't resell tools and we don't take vendor commissions.
- We don't sell day rates.
- We don't run free pilots — the scoping call is free; everything else is engaged.
- We don't claim certifications or accreditations we don't hold.
- We don't publish client logos without written consent. Read the methodology page at https://hackingbyte.com/methodology and the service
descriptions at https://hackingbyte.com/services to evaluate whether HackingByte
is the right fit before the conversation starts. (Casablanca; OMPIC; ICE 384549). Contact: [email protected]

Mon interview avec HESPRESS FR à propos de Hackers: entre éthique et immoralité.HackingByte Amine Cherrai - أمين الشراعي...
22/01/2019

Mon interview avec HESPRESS FR à propos de Hackers: entre éthique et immoralité.

HackingByte Amine Cherrai - أمين الشراعي

https://fr.hespress.com/25550-hackers-entre-ethique-et-immoralite.html

Le hacking (piratage) en informatique fait référence à la pratique de décortiquer, et de rentrer dans les coins et recoins les plus éloignés d’un système Le hacking (piratage) en informatique fait référence à la pratique de décortiquer, et de rentrer dans les coins et recoins les plus ....

Our interview with   about    Al Jazeera Channel - قناة الجزيرةAmine Cherrai - أمين الشراعي
15/10/2018

Our interview with about

Al Jazeera Channel - قناة الجزيرة
Amine Cherrai - أمين الشراعي

"  is a  " HackingByte Amine Cherrai - أمين الشراعي
03/10/2018

" is a " HackingByte Amine Cherrai - أمين الشراعي

Don't worry if you got logged out from   today. They were  . Someone exploited a vulnerability in thier implementation o...
28/09/2018

Don't worry if you got logged out from today. They were .

Someone exploited a vulnerability in thier implementation of and got access_tokens (it has the same power as password) of millions users. So they had to reset passwords of infected users and log them out.

From my point of view, the attacker can't exploit this vulnerability without the user interaction. Someone needs to click a link, visit a malicious website or install a mobile app. Although you use two factors authentication (2F). It cannot protect you from these attacks.

I discovered the same bug 3 times, 6 years ago, and I reported to Facebook security team. I also reported a similar bug 2 months ago in Facebook mobile app that can lead to leak access_tokens. The last bug is not closed yet so I can't disclose it now.

You better have to reset your passwords.

HackingByte

We are at
07/06/2018

We are at

Equifax filing reveals hack was somehow even worse than previous estimates
10/05/2018

Equifax filing reveals hack was somehow even worse than previous estimates

The 2017 hack of Equifax, already among the largest ever recorded, just got bigger. Well, they’re admitting that it was bigger than they had previously, which amounts to the same thing. Docum…

BREAKING NEWS: Twitter advises all of its users to change their passwords as it discloses password-storage glitch that e...
03/05/2018

BREAKING NEWS: Twitter advises all of its users to change their passwords as it discloses password-storage glitch that exposed them in clear text on its internal systems.

22/04/2018

أثار موضوع حماية المعطيات الرقمية في وسائط التواصل الاجتماعي جدلا كبيرا بين مستخدمي الأنترنيت بالمغرب، بعد...

Address

Casablanca

Telephone

+212673124834

Website

https://www.youtube.com/@HackingByte, https://www.instagram.com/HackingByte, https://x.com/Hac

Alerts

Be the first to know and let us send you an email when HackingByte posts news and promotions. Your email address will not be used for any other purpose, and you can unsubscribe at any time.

Contact The Business

Send a message to HackingByte:

Share