Blacksight · Security Testing & Hardening

Practice the worst day
with blacksight

Manual penetration testing and red teaming worldwide, with most pentests delivered on site. Wi-Fi hardening and on-site bug sweeps for your business, your home office, and your home.

Continuous Cyber Assurance

Assess. Verify. Monitor.

Combine an on-site and remote security assessment with remediation verification and ongoing monitoring. One scoped program carries the work from the initial baseline to the next meaningful change.

One continuous workflow

  1. 01

    Establish the baseline

    Agree the locations and systems, then test the authorized scope.

  2. 02

    Close and verify gaps

    Prioritize action, coordinate remediation, and document retest results.

  3. 03

    Maintain visibility

    Monitor agreed assets and networks with defined review and escalation.

For homes & businesses

Secure your Wi-Fi.
Protect your privacy.

BlackSight tests and hardens wireless networks for homes and businesses. Our on-site surveillance assessments combine network analysis, physical inspection, and RF sweeps to investigate potential listening devices and unauthorized surveillance equipment.

Home & Office Wi-Fi Security

Test wireless defenses, harden routers and access points, and review connected devices. Make practical improvements to guest access and smart-device separation.

Wireless pentesting / Hardening / Device review

Explore Wi-Fi security

Bug Sweeps & Surveillance Detection

Investigate privacy concerns in homes, home offices, and business spaces. Get a documented assessment of the areas inspected, observations, and next steps.

Network analysis / Physical inspection / RF sweeps

Explore bug sweeps

Our expertise.

At your service.

What makes a pentest successful?

A successful penetration test is more than finding vulnerabilities, it proactively strengthens cybersecurity. A good pentest mimics real-world attacks, revealing weaknesses. Ethical hackers strategically identify entry points, exploit vulnerabilities and offer insights for mitigation. This provides a thorough understanding of a system's security, empowering organizations to enhance defenses against cyber threats.

What services do we offer?

We secure home and office Wi-Fi through wireless penetration testing, router and access-point hardening, guest-network separation, and connected-device reviews. We also provide global penetration testing and red teaming, Active Directory and infrastructure audits, and incident response support. Most pentests are performed on site, including international engagements. Our Wi-Fi and privacy sweeps combine network analysis, physical inspection, and RF sweeps for homes and businesses.

Methodology

Home & office Wi-Fi security.

Test wireless access, harden routers and access points, separate guest and smart-device traffic, and review the equipment connected to your network.

Explore Wi-Fi security →

Wi-Fi & privacy sweeps.

Combine network device investigation with on-site physical inspection and RF sweeps. Get documented findings and clear coverage limits for your home or business.

Explore bug sweeps & TSCM →

Website security audit.

Our team dives deep into your web apps, using advanced methods to pinpoint vulnerabilities. Get detailed insights and strategic solutions to fortify your online assets.

Global penetration testing →

Active directory health check.

Our dedicated team of Active Directory experts conducts a thorough assessment to ensure the security of your network's backbone, identifying potential vulnerabilities within your Active Directory infrastructure.

Cloud infrastructure audit.

From network devices to servers, we identify vulnerabilities that could compromise the integrity of your entire system. Our goal is to fortify your infrastructure against potential threats.

Incident response support.

In the event of a security incident, time is of the essence. We provide a rapid and effective response framework, minimizing the impact of security breaches and helping you get back on track quickly.

Testing modes.

Get the best insight.

What are testing modes?

Pentesting operates in three main distinct modes: Black Box, where testers approach the system as external attackers with no prior knowledge. Grey Box, combining external and partial internal knowledge for a balanced assessment and White Box where testers have full access to the system's internal workings enabling an in-depth analysis of vulnerabilities. These modes offer varying perspectives, allowing organizations to tailor their approach based on specific security goals and requirements.

Test modes

Black box +

• Most realistic
• Hacker perspective
• No intelligence provided
• Minimal permissions required

Gray box ++

• Most common
• Fast reconnaissance
• All permissions granted
• Partial documentation provided

White box +++

• Most complete
• High quality assurance
• Full source code review
• Full documentation provided

Methodology.

From beginning to end.

What is our approach?

Penetration testing employs a systematic methodology involving reconnaissance, vulnerability identification and simulated cyber-attacks. Testers use automated tools and manual techniques to exploit weaknesses, assessing the system's resilience and identifying potential security gaps. The process concludes with detailed reports outlining discovered vulnerabilities and recommendations for remediation, providing a proactive approach to cybersecurity by addressing risks before exploitation.

Why are we different?

We are a team of specialists with decades of complementary expertise. Unlike automated pentesters, we conduct manual and focused assessments, mirroring the precision of a real targeted attack on your organization. When you choose us, you're not just hiring one pentester, you're bringing on board a dedicated team of security professionals. At Blacksight, our mission is to ensure your business operates in a safe and secure environment. Let Blacksight guide you towards achieving this goal.

Methodology
New Service

MCP Penetration Testing

Secure your AI tool integrations before attackers exploit them.

The Model Context Protocol connects AI assistants to your internal systems — databases, APIs, code repositories, cloud infrastructure. Every MCP server is an attack surface. We test them the way a real adversary would.

Prompt Injection

Tool-use hijacking, context poisoning, and privilege escalation through crafted inputs.

Data Exfiltration

Unauthorized access to databases, credentials, and sensitive resources via MCP tool calls.

Auth Bypass

Broken access controls, missing permission boundaries, and cross-tenant data leaks.

Pricing & engagement options

The right scope. A clear quote.

Choose the service that fits your home or business. We confirm the systems, location, deliverables, and work included before the engagement begins.

Wi-Fi Security Assessment

Testing and hardening for home and office networks.

Request a quote

Scoped to your network

  • Wireless access and segmentation testing
  • Router and access-point review
  • Connected-device inventory
  • Hardening and follow-up checks as agreed

Wi-Fi & Privacy Sweep

On-site TSCM inspections for homes and businesses.

Request a quote

Scoped to your location

  • Network device investigation
  • Physical inspection of agreed areas
  • RF sweeps within supported coverage
  • Documented findings and inspection limits

Website Audit

Manual web application penetration testing.

Request a quote

10-day assessment

  • Manual testing by security specialists
  • In-depth application assessment
  • Retesting included
  • Comprehensive report and remediation guidance

AD Health Check

Active Directory security and configuration review.

Request a quote

2-day assessment

  • Manual assessment by security specialists
  • Identity and privileged-access review
  • Configuration and good-practice analysis
  • Comprehensive report

Cloud / Infrastructure Audit

Security assessment for AWS, GCP, or Azure.

Request a quote

5-day assessment

  • Manual infrastructure testing
  • Cloud access and configuration review
  • Retesting included
  • Comprehensive report

Incident Response Support

Help investigating and responding to a security incident.

Request a quote

Custom duration

  • Support from security specialists
  • Incident investigation and response
  • Recommendations for lasting improvements
  • Documented findings

Durations shown are service outlines; the final proposal confirms scope and scheduling. Wi-Fi hardening, on-site travel, and additional follow-up work are agreed during scoping. Your quote sets out any applicable tax.

Need a broader penetration test or red team exercise? Explore our global engagements.

Your security questions, answered.

What security services does BlackSight offer?

BlackSight provides continuous cyber assurance, global manual penetration testing and red teaming, Wi-Fi security and hardening, connected-device reviews, Active Directory and infrastructure audits, MCP security testing, incident response support, and on-site TSCM bug sweeps.

Does BlackSight work with clients worldwide?

Yes. We provide penetration testing and red teaming for organizations worldwide. Most of our pentests are delivered on site, including international engagements. We coordinate travel, site access, and testing schedules with your team. Our headquarters are in Nashville, Tennessee.

Can BlackSight secure a home or office Wi-Fi network?

Yes. We offer wireless penetration testing, router and access-point hardening, guest and smart-device segmentation, and reviews of visible connected devices. We agree which configuration changes and follow-up checks are included before work begins.

What is included in a Wi-Fi and privacy sweep?

Our on-site TSCM assessments combine network analysis, physical inspection, and RF sweeps for homes and businesses. Findings document the areas checked, observations, and coverage limitations. A network scan alone cannot rule out every listening device.

How are assessments priced?

We provide a scoped quote based on your systems, location, access, and the depth of testing or inspection. The proposal explains deliverables, timing, and any hardening, remediation support, or retesting included.

Contact us

And let's find the right solution.