PlutoSecReviews 33

4.5
How would you rate PlutoSec?
grey star
grey star
grey star
grey star
grey star

PlutoSec Reviews Summary

PlutoSec has a rating of 4.5 stars from 33 reviews, indicating that most customers are generally satisfied with their purchases. PlutoSec ranks 6th among Cyber Security sites.

service
2
value
2
shipping
1
returns
1
quality
2
New York
1 review
0 helpful votes
Follow Noah J.
Unfollow Noah J.
Send Message
Share Review
Report Review

After their findings, our devs started coding with security in mind. The lessons from that test are still part of our engineering onboarding today.

Date of experience: April 8, 2025
GB
1 review
0 helpful votes
Follow Grace L.
Unfollow Grace L.
Send Message
Share Review
Report Review

Plutosec accessed internal dashboards through a VPN configuration flaw we had no idea existed. They showed us exactly how to lock it down properly.

Date of experience: April 11, 2025
GB
1 review
0 helpful votes
Follow Amelia V.
Unfollow Amelia V.
Send Message
Share Review
Report Review

They don't miss a thing.
April 26, 2025

From HTTP headers to cookie flags to obscure CORS misconfigs, their testing covered everything deep and wide. Not a checkbox test. A real one.

Date of experience: April 10, 2025
Colorado
1 review
0 helpful votes
Follow Henry G.
Unfollow Henry G.
Send Message
Share Review
Report Review

They picked apart our OAuth implementation and showed us how it could be bypassed under very specific conditions. It took them less than 48 hours.

Date of experience: April 8, 2025
California
1 review
0 helpful votes
Follow Edward O.
Unfollow Edward O.
Send Message
Share Review
Report Review

These guys are sharp. They didn't just use known tools they built scripts on the fly to demonstrate real-world exploitability. That level of testing is rare.

Date of experience: April 7, 2025
California
1 review
0 helpful votes
Follow Jaco J.
Unfollow Jaco J.
Send Message
Share Review
Report Review

Plutosec's clean vulnerability report and evidence of remediation gave us credibility with investors. It was one of the reasons we passed tech due diligence without issues.

Date of experience: April 9, 2025
Rhode Island
1 review
0 helpful votes
Follow Foster T.
Unfollow Foster T.
Send Message
Share Review
Report Review

We were scaling rapidly and wanted to make sure our stack could hold up. Plutosec gave us that assurance by thoroughly breaking (and helping us fix) everything.

Date of experience: April 8, 2025
California
1 review
0 helpful votes
Follow Mac M.
Unfollow Mac M.
Send Message
Share Review
Report Review

We needed something clear for leadership. Their exec summary explained the risk in simple, powerful language while the appendix had all the tech our engineers needed. Perfect balance.

Date of experience: April 7, 2025
GB
1 review
0 helpful votes
Follow Steven A.
Unfollow Steven A.
Send Message
Share Review
Report Review

They found a bunch of smaller issues and showed us how an attacker could chain them into full system compromise. That kind of thinking is rare.

Date of experience: April 8, 2025
GB
1 review
0 helpful votes
Follow Allison J.
Unfollow Allison J.
Send Message
Share Review
Report Review

They discovered an insecure endpoint we accidentally left in production. With tokens from the app, it could've been exploited for mass data theft. Crisis averted.

Date of experience: April 10, 2025
GB
1 review
0 helpful votes
Follow Laura C.
Unfollow Laura C.
Send Message
Share Review
Report Review

They crafted custom payloads to test our GraphQL API and broke things we didn't know could be broken. That's not something you get from automated scanners.

Date of experience: April 9, 2025
GB
1 review
0 helpful votes
Follow Nancy P.
Unfollow Nancy P.
Send Message
Share Review
Report Review

They found a way to access user data just by modifying a parameter. The exploit was easy to miss but very dangerous. Their detailed proof-of-concept helped us fix it within hours.

Date of experience: April 7, 2025
New York
1 review
0 helpful votes
Follow Steve J.
Unfollow Steve J.
Send Message
Share Review
Report Review

They demonstrated lateral movement from a guest network VLAN to sensitive internal servers. That report went straight to the board and changes were made immediately.

Date of experience: April 7, 2025
Texas
1 review
0 helpful votes
Follow Henry T.
Unfollow Henry T.
Send Message
Share Review
Report Review

One of our staging environments was misconfigured and exposed. They found it, accessed it, and showed how it could be leveraged to breach production. That alone was worth the price.

Date of experience: April 7, 2025
GB
1 review
0 helpful votes
Follow John S.
Unfollow John S.
Send Message
Share Review
Report Review

Plutosec didn't sell us jargon they delivered raw results. Real attack paths, critical issues, and hands-on proof. That's what you want in a pentest.

Date of experience: April 7, 2025
Colorado
1 review
0 helpful votes
Follow Ezra Q.
Unfollow Ezra Q.
Send Message
Share Review
Report Review

They decompiled our iOS and Android apps, tested offline storage, intercepted traffic, and even brute-forced our PIN lockouts. Everything was methodical. You could tell they've done this a lot.

Date of experience: April 2, 2025
Sam P. PlutoSec Rep
4 months ago

Thankyou for Your Valuable Response

GB
1 review
0 helpful votes
Follow Otis L.
Unfollow Otis L.
Send Message
Share Review
Report Review

Their vulnerability assessment was instrumental in fixing issues before our PCI audit. The consultant even reviewed our firewall rules and pointed out flaws outside of the original scope. That's above and beyond.

Date of experience: April 2, 2025
Sam P. PlutoSec Rep
4 months ago

Thankyou for Your Valuable Response

Canada
1 review
0 helpful votes
Follow Albie R.
Unfollow Albie R.
Send Message
Share Review
Report Review

From one exposed printer, they mapped our entire internal environment. Seeing how easy it was to jump across VLANs was horrifying—but that's exactly what we needed to see.

Date of experience: April 2, 2025
Sam P. PlutoSec Rep
4 months ago

Thankyou for Your Valuable Response

GB
1 review
0 helpful votes
Follow Jaxon R.
Unfollow Jaxon R.
Send Message
Share Review
Report Review

During the engagement, they not only tested but also taught us what to look for. We even had a Q&A session with our devs and sysadmins. It turned into a mini workshop. Very collaborative and professional.

Date of experience: April 2, 2025
Sam P. PlutoSec Rep
4 months ago

Thankyou for Your Valuable Response

GB
1 review
0 helpful votes
Follow Calix R.
Unfollow Calix R.
Send Message
Share Review
Report Review

It wasn't just a pentest
April 12, 2025

Plutosec started from a regular user account and within days had domain admin. They showed us how our lack of segmentation and weak password policies were basically handing the keys over to any attacker with internal access. The way they documented everything helped our IT team close gaps fast. It wasn't just a pentest—it was a wake-up call.

Date of experience: April 1, 2025
Sam P. PlutoSec Rep
4 months ago

Thankyou for Your Valuable Response