PXL Security LTD, Sofia, Bulgaria Offensive security since 2014hello@pxlsec.com

Penetration testing and red teaming, since 2014

Find the gaps before attackers do.

We test your applications, infrastructure and people the way a real adversary would, then give you a clear, prioritised plan to fix what actually matters. Manual testing by senior engineers, evidence for every finding, and a retest to prove the fix.

Example findingReport ref. PXL-WEB-07
High

Invoice API returns other tenants' data

Affected
GET /api/v2/invoices/{id}
Impact
Any signed-in customer can read every other customer's invoices, addresses and VAT details by changing one number.
Evidence
Request and response pair, three tenants confirmed, screenshots in appendix B.
Fix
Enforce tenant ownership in the invoice service, not the UI. Code example included.
Retested 12 days later: closed
Since 2014Over a decade testing for real clients
Senior testers onlyThe people you meet are the people who test
Retest includedEvery engagement, no upsell
EU companyPXL Security LTD, Sofia

How an engagement runs

The same four stages on every project, so you always know what is happening and what you will receive.

  1. Scope

    A call with a senior tester to agree objectives, targets, rules of engagement and a fixed timeline. You receive a written proposal.

  2. Test

    Hands-on testing and safe exploitation. Critical issues are reported to you the same day, not held for the final report.

  3. Report

    An executive summary for leadership and a technical report your engineers can work from, walked through in a live debrief.

  4. Retest

    Once you've fixed the issues, we test them again and issue a letter confirming what is closed.

Certified, hands-on testers

Our engineers hold the industry's most demanding practical certifications. Each one is earned in a timed, hands-on exam against live targets, not a multiple-choice test.

OSCE³ badgeOSCE³OffSec Certified Expert
OSWE badgeOSWEOffSec Web Expert
OSEP badgeOSEPOffSec Experienced Penetration Tester
OSED badgeOSEDOffSec Exploit Developer
OSCP badgeOSCPOffSec Certified Professional
CRTO badgeCRTOCertified Red Team Operator
CRTL badgeCRTLCertified Red Team Lead
CRTE badgeCRTECertified Red Team Expert
BSCP badgeBSCPBurp Suite Certified Practitioner
CREST CRT badgeCREST CRTCREST Registered Penetration Tester

What clients say

Long-standing clients, some with us since our first year. Names are withheld: we work under NDA by default.

PXL Security's team is very talented and committed, and strives to get the job done. Their penetration testing skills are top-notch, at both network and web application level. Their reporting and communication skills are very good too.

CEOCyber threat intelligence company, 2017

PXL Security provides professional IT security analysis and advice. The team demonstrates expertise and is thorough in its work. We have been impressed with their attention to detail and highly recommend their services.

Senior Cyber Security AnalystClient organisation, 2016

We hired PXL Security to analyse our website for potential security threats. We got the top vulnerabilities listed, along with a way to mitigate them. This helped us reduce the chances of an attack.

Founder and engineerSoftware company, 2015

PXL Security provides top-notch security services with a focus on making things right for their clients. I would highly recommend anyone looking for cyber consultants to give them a try.

ClientTechnology services, 2015

PXL Security has helped us with a number of security activities and we have always been very pleased with the quality and delivery.

Head of ProductHealthcare technology company, 2014

Reports your engineers can actually use

A finding is only useful if someone can fix it. Each one in our reports carries its severity, the affected component, reproducible evidence, the business impact in plain language, and a concrete fix. Leadership gets a short summary of risk; engineers get everything they need to close it.

Our reports are structured to support evidence requirements for ISO 27001, SOC 2, PCI DSS, DORA and NIS2, and we can map findings to the controls your auditor asks about.

  • Executive summaryOverall risk, key themes and recommendations on two pages.
  • Technical findingsSeverity, evidence and step-by-step reproduction for every issue.
  • Remediation guidanceFixes ranked by real risk, with code or configuration examples.
  • Live debriefA walkthrough with your team to answer questions and agree priorities.
  • Retest letterWritten confirmation of closed findings for customers and auditors.

About PXL Security

PXL Security LTD is an independent offensive-security company headquartered in Sofia, Bulgaria. We have been on the market since 2014, helping start-ups, scale-ups and established enterprises understand their real exposure through manual, realistic testing.

In that time attack techniques, cloud platforms and regulation have changed many times. How we work has not: hands-on, honest about what testing can and can't prove, plain in our reporting, and committed until issues are verified fixed.

We also build our own security software: Blackbar for redacting report screenshots, and Airward for Wi-Fi monitoring.

Legal name
PXL Security LTD
On the market
Since 2014
Headquarters
12 Vasil Levski Blvd., 1142 Sofia, Bulgaria
VAT number
BG203239331
Clients
Fintech, SaaS, e-commerce, healthcare, critical infrastructure and the public sector

Software we build

Tools that grew out of our own engagements, now used by security teams and individuals.

Blackbar

macOS, Windows, Linux

Screenshot redaction for security reports. Local OCR and 27 detectors find credentials, tokens, hashes and internal hostnames, then Blackbar permanently overwrites the pixels instead of blurring them. Fully offline, no telemetry.

Visit getblackbar.com

Airward

macOS

A menu-bar app that inventories every device on your Wi-Fi and alerts you to unknown devices and rogue access points. The monitoring we do on engagements, packaged so anyone can run it. Fully local, no telemetry.

Visit airward.app

Sectors we work in

Threats and regulation differ by industry. Our testers adapt the scope and the reporting to yours.

Fintech and banking

Payments, open banking APIs, DORA readiness.

SaaS and technology

Multi-tenant platforms, APIs, SOC 2 and ISO 27001.

E-commerce and retail

Checkout flows, fraud paths, PCI DSS scope.

Healthcare

Patient data, connected devices and integrations.

Critical infrastructure

NIS2 obligations and OT-adjacent networks.

Public sector and NGOs

Citizen-facing services and portals.

Insurance

Policy and claims platforms, broker portals, partner APIs.

Telecommunications

Customer portals, provisioning systems and core-adjacent networks.

Energy and utilities

Smart-metering platforms, billing systems, NIS2 obligations.

Manufacturing and logistics

ERP and SAP landscapes, supply-chain portals, plant networks.

Gaming and betting

Wallets, anti-cheat bypasses, account takeover and payment abuse.

Crypto and Web3

Exchanges, custody platforms, wallets and their supporting APIs.

Education

Learning platforms, student data and campus networks.

Media and entertainment

Streaming platforms, content protection and subscriber data.

Legal and professional services

Client portals and document systems that hold confidential data.

Questions clients ask

Anything else? Email hello@pxlsec.com and a tester will answer.

How long does a penetration test take?

Most web application or API tests take one to two weeks of testing, depending on scope. Red team operations usually run for several weeks. You receive a clear timeline in the proposal.

How is pricing determined?

Pricing is based on scope and effort and agreed in writing before testing starts. The remediation retest is always included.

Will testing disrupt our production systems?

Safety comes first. We agree rules of engagement, testing windows and emergency contacts up front, and avoid destructive techniques unless you explicitly authorise them. Staging environments are welcome.

Do you help with compliance requirements?

Yes. Our reports are structured to support evidence for ISO 27001, SOC 2, PCI DSS, DORA and NIS2, and we can map findings to the specific controls in your audit.

Can you sign our NDA and supplier paperwork?

Yes. PXL Security LTD is registered in Bulgaria (VAT BG203239331) and routinely works under client NDAs, DPAs and vendor-onboarding processes.

Do you work outside Bulgaria?

Yes. We're based in Sofia and work with clients across the EU and worldwide, remotely or on-site.

Tell us what you need tested.

Send a short description of your environment and goals. A senior tester, not a salesperson, will reply with questions, a proposed approach and a quote.

Email hello@pxlsec.com

Useful to include

  • What's in scope: applications, APIs, networks, cloud accounts
  • Your deadline, and any compliance driver (ISO 27001, SOC 2, PCI DSS, DORA, NIS2)
  • Whether testing should run against production or staging