Prove your wireless networks resist evil-twin, rogue-AP, and credential-capture attacks.
StealthNet tests your enterprise WiFi for authentication weaknesses, rogue access points, encryption gaps, and segmentation failures, then delivers an audit-ready report tied to PCI 11.1 and SOC 2 CC6.6.
Trusted by Companies Where Security Isn't Optional
What we test
Comprehensive coverage of the attack surface most relevant to this engagement.
Network discovery
SSID and BSSID mapping, hidden network detection, and WPS exposure assessment.
Authentication testing
Weak PSKs, WPA-Enterprise misconfigurations, captive portal bypass, and RADIUS issues.
Encryption review
WPA2 and WPA3 implementation, PMF/802.11w validation, and downgrade attack resistance.
Rogue access points
Evil-twin testing, karma attacks, and unauthorized AP detection on the network.
Segmentation
VLAN and ACL controls between guest, corporate, and IoT networks plus lateral movement testing.
Management security
Default credentials, exposed admin interfaces, and firmware version risk on AP infrastructure.
How it works
A clear, repeatable process from scope to remediation.
Scoping
Identify locations, SSIDs, and authentication models in scope.
On-site testing
On-site or remote testing of wireless infrastructure with calibrated antennas.
Reporting
Audit-ready report with capture evidence, attack paths, and remediation guidance.
Remediation
Engineering support during fixes and complimentary retesting.
Who it's for
- Retailers and merchants meeting PCI DSS wireless testing requirements
- Healthcare providers meeting HIPAA wireless safeguards
- Enterprises validating guest and IoT network segmentation
What's in the report
- Wireless network inventory with capture evidence
- Authentication and encryption findings with proof
- Segmentation findings and lateral movement evidence
- Remediation guidance per finding
- PCI DSS, SOC 2, and HIPAA compliance mapping
- Free retesting on confirmed fixes
Frequently asked questions
Related services
Internal Network Pentesting
Test the internal network behind your wireless infrastructure.
Learn moreHardware & IoT Pentesting
Test wireless protocols on the device side, including BLE and Zigbee.
Learn moreExternal Pentesting
Test the perimeter that protects your networks.
Learn moreFurther reading
Ready to get started?
Talk to a senior pentester. Scope and SOW in days, testing can start in 24 hours.
Most engagements can start within 24 hours