Home Operation Intelligence Ticket Cyber Team FR Contact
VAIATA Cyber

We show you
what attackers
already see.

Free external security audit for maritime companies. Non-intrusive, no commitment: a clear picture of your exposure.

analysing company.com …
✗ Database exposed on the internet
✗ Anyone can forge emails as @company.com
✗ VPN login page publicly visible
⚠ 5 employee emails in data breaches
✓ SSL certificate valid
→ 4 findings require immediate attention
Passive by default
Maritime sector
Supports your NIS2 efforts
Free audit
100%
Findings verified
CSV
Findings with severity
SHA-256
Timestamped evidence
What's at risk

The attack surface
you don't know about

Every company with a website, email, and remote access has a public attack surface. Here's what we typically find in the maritime sector.

Systems open to the internet

Databases, admin panels, VPN login pages, and internal tools that respond to anyone who knows where to look. These are the first thing an attacker checks.

Email fraud risk

Missing or misconfigured email protections that let anyone send messages as your company. The number one vector for invoice fraud and CEO impersonation.

Leaked credentials

Employee email addresses found in known data breaches. Combined with password reuse, this gives attackers a direct way in, no hacking required.

Information visible in DNS

Client names, internal project names, and test environments exposed through your domain configuration. Competitive intelligence handed out at no cost.

How it works

Three steps.
Nothing intrusive.

We look at your company exactly the way an attacker would: from the outside, using only public information. By default, nothing on your systems is touched.

1

We map

Analysis of your public infrastructure through low-volume public queries: domains, email configuration, exposed services, search engine footprint, known breaches.

2

We verify

Every finding is checked by hand. False positives are discarded. We include what we ruled out, so you can see the rigor, not just the headlines.

3

You get a report

A clear document with prioritized findings, what they mean for your business, and what to do about them. Findings also come as a CSV, with severity and timestamped evidence. No jargon, no filler.

Services & pricing

From free audit
to ongoing supervision

Start with a free report. Move to active testing or ongoing supervision whenever you want to go deeper. All prices excl. VAT.

1

Free external audit

Verified findings about your public exposure. What we found, what we ruled out, what it means. Timing agreed with you upfront. The starting point of any engagement.

Free, no commitment
2

Penetration testing

Authorized active testing under signed scope. Three formulas: Discovery (1 external domain), Standard (up to 5 digital assets and phishing simulation), In-depth (full scope and web application).

3

Ongoing supervision

Regular supervision of your external surface. Three tiers: Watch (1 domain, monthly report), Pro (up to 5 assets, alerts on the agreed cycle), Sovereign (extended scope, weekly reports, direct team access). 6-month minimum.

Why now

Maritime cybersecurity
is now a regulatory
requirement.

Maritime transport, ports, and their suppliers are now classified as essential entities under the European NIS2 directive and the French Resilience Act. Cyber risk management and incident reporting are required by law. Preparing ahead strengthens your position when partners assess your security posture.

NIS2 Directive & Resilience Act

EU-wide and French cybersecurity obligations for the maritime sector. Risk management and incident reporting are now required by law.

IMO Resolution MSC.428(98)

Cyber risk management must be integrated into ship safety management systems. Enforced during flag state audits.

Supply chain audits

Essential entities must audit their suppliers' security. If you serve a port or a shipping company, your exposure is their risk.

Get started

Know your exposure
before attackers do.

Request a free audit. No sales pitch, no commitment: just a verified report of what's visible from the outside.