Any tier · 24 specialized tests

Authenticated Scanning (Recommended)

85% of real breaches exploit authenticated access — test what logged-in users can do

€109 per role Add to Scan

What Gets Tested

Authenticated session crawling & testing
IDOR (Insecure Direct Object Reference) detection
Horizontal privilege escalation testing
Vertical privilege escalation testing
Role-based access control verification
Post-authentication CSRF testing
Authenticated API endpoint discovery
Session fixation & management testing
Account takeover vector assessment
Multi-role comparison (admin vs user vs guest)

How It Works

1

Credential Setup

You provide test credentials for each role (admin, user, moderator, etc.).

2

Authenticated Crawl

Scanner logs in and discovers all authenticated pages and API endpoints.

3

Access Control

Test every endpoint with each role to detect privilege escalation and IDOR.

4

Session Testing

Verify session management, timeout, fixation protection, and token security.

Compliance Coverage

OWASP-A01 (Broken Access Control) OWASP-A07 (Auth Failures) PCI DSS Req 7

Authenticated Scanning (Recommended)

€109 per role

Any tier · One-time per scan

24 specialized tests + AI-powered analysis

Start Your Scan

Select this addon when configuring your scan

Related Add-Ons