iconCase Studies

Penetration Testing for Payments Service Provider

Security assessment for Mamo

Location

Dubai, UAE

Industry

Fintech

csHero image

Our Client

Mamo, a leading payments solutions provider in the UAE, transforms businesses by helping them consolidate payment collection, corporate cards, and expense management in one beautiful, intuitive platform. Over 1,000 companies have used Mamo to improve revenue collection, control spending, reduce costs and automate financial operations. Mamo's mission is to empower people to effortlessly access their money through a platform that demonstrates simplicity, empathy, and utility.

mockup

Why the Client Needed Penetration Testing for Its Payment Systems

Mamo required a thorough security assessment of its cloud infrastructure, mobile applications, and web platform. Operating in a fintech environment where data security, user trust, and regulatory standards are crucial, Mamo had to ensure that every aspect of its payment solution could withstand evolving threats. With thousands of businesses relying on their platform for payment collection and expense management, even a minor vulnerability could pose significant financial and reputational risks.

Furthermore, maintaining robust security measures became challenging as Mamo’s product offerings and customer base grew. Ensuring that every system remained operationally sound and met compliance requirements was critical. Achieving this balance was essential for upholding Mamo’s commitment to reliability, trust and transparency in financial services.

How We Delivered Penetration Testing for a Payment Platform

How We Delivered Penetration Testing for a Payment Platform

We conducted a comprehensive penetration test, following the Penetration Testing Execution Standard (PTES) and OWASP Testing Guides, to identify and address potential vulnerabilities across Mamo’s cloud, mobile, and web applications.

Our Penetration Testers

Ihor Sasovets

Ihor Sasovets

Lead Security Engineer

Ihor is a certified security specialist with experience in penetration testing, security testing automation, cloud and mobile security. OWASP API Security Top 10 (2019) contributor. OWASP member since 2018.

sc-9.png
sc-11.png
sc-12.png
sc-6.png
sc-8.png
sc-3.png
sc-4.png
sc-7.png
sc-1.png
sc-5.png
Victoria Shutenko

Victoria Shutenko

Security Engineer

Victoria is a certified security specialist with a background in penetration testing, security testing automation, AWS cloud. Eager for enhancing software security posture and AWS solutions

sc-6.png
sc-3.png
sc-11.png
sc-7.png
sc-8.png
Denys Spys

Denys Spys

Associate Security Engineer

Denys is a certified security specialist with web and network penetration testing expertise. He demonstrates adeptness in Open Source Intelligence (OSINT) and executing social engineering campaigns. His wide-ranging skills position him as a well-rounded expert in the cybersecurity industry.

sc-6.png
sc-11.png
Certification.png
sc-7.png
Roman Kolodiy

Roman Kolodiy

Director of Cloud & Cybersecurity

Roman is an AWS Expert at TechMagic. Helps teams to improve system reliability, optimise testing efforts, speed up release cycles & build confidence in product quality.

sc-12.png
sc-10.png
sc-2.png
|

Common Tools We Use

From static and dynamic testing to cloud configuration reviews and AI-informed detection, we ensure our toolkit evolves alongside emerging technologies and attacker tactics. This allows us to identify critical risks across third-party dependencies, custom logic, and complex system architectures—while aligning with each client’s unique tech stack.

OWASP ZAP
OWASP ZAP
Burp Suite
Burp Suite
Arachni
Arachni
SonarQube
SonarQube
Semgrep
Semgrep
Snyk.io
Snyk.io
Maltego
Maltego
SpiderFoot
SpiderFoot
Nmap
Nmap
Wappalyzer
Wappalyzer
Kali Linux
Kali Linux
Parrot Security
Parrot Security

Penetration Testing Outcomes

Following our comprehensive penetration testing and security assessment, Mamo achieved a significantly improved overall security posture across its cloud, mobile, and web environments. Our team’s in-depth findings and tailored remediation strategies enabled Mamo to address critical vulnerabilities before malicious actors could exploit them. In addition, our clear documentation and guidance helped streamline ongoing security efforts, enhancing regulatory compliance and stakeholder confidence.

By adopting a proactive stance on cybersecurity, Mamo reinforced user trust, minimized potential disruptions, and established a foundation for continual improvement in a rapidly evolving fintech landscape.

As a result, Mamo recognized our comprehensive approach and scheduled regular penetration testing and vulnerability scanning with us, ensuring an ongoing commitment to robust security.

Penetration Testing Outcomes

Why Choose TechMagic For Penetration Testing

Certified security specialists

Certified security specialists

As a CREST-accredited team with certifications like PenTest+, CEH, eJPT, and eWPT, we combine proven expertise with a commitment to continuous learning. We’re actively developing in AI-driven security, both to counter AI-powered attacks and to enhance testing efficiency.

Our services include: cloud and network pen testing, web and mobile application security testing, API testing, social engineering testing.

001

/003

Experience in fintech domain

Experience in fintech domain

002

/003

Reliable cybersecurity partner

Reliable cybersecurity partner

003

/003

Let’s safeguard your project

Ross Kurhanskyi
Ross Kurhanskyi

VP of business development

linkedin-icon

Trusted by:

logo
logo
logo
logo

FAQs

Cases That May Be Of Interest To You

cookie

We use cookies to personalize content and ads, to provide social media features and to analyze our traffic. Check our privacy policy to learn more about how we process your personal data.