Adversary simulation · Red team

We breach first. So they can’t.

UMBRA runs full-scope intrusions against your estate the way a real adversary would — then hands you the timeline, the artifacts, and the fix order. No vanity findings.

Request an engagement

Services

Offense as a discipline

From a targeted test to a months-long operation. Every service ends with reproducible evidence and a prioritized fix plan.

Pentesting

We assess the security of your applications, networks, and APIs by simulating real attacks. We identify critical vulnerabilities before malicious actors exploit them, delivering practical reports for remediation.

  • Web & Mobile
  • Networks & APIs
  • Vulnerabilities

Phishing

We test the resilience of your most important link: people. We create simulated, customized social engineering campaigns to measure and raise your team's awareness against fraud.

  • Social Engineering
  • Simulations
  • MFA Bypass

Red Team Operations

Full-scope, persistent attack simulations. We test not only technology but your defense team's detection and response capabilities against real-world adversaries.

  • Adversary Simulation
  • EDR Evasion
  • Detection

Training

Technical and practical training in offensive and defensive security. We prepare your development or IT team with industry best practices and a hacker mindset.

  • Hacker Mindset
  • Hands-on Security
  • Secure Coding

CTFs (Capture The Flag)

Gamified platforms and practical challenges for security skill development. Ideal for engaging teams, assessing technical skills, and recruiting talent.

  • Gamification
  • Hands-on Training
  • Recruitment

How we operate

Every finding is reproduced, timed, and contained.

We operate by objective, not by checklist. We measure what matters: time-to-compromise, blast radius, and the shortest path to domain admin.

  1. Scope & rules of engagement

    We set the objective, boundaries, and windows. NDA and authorization before any packet.

  2. Reconnaissance

    We map the external and internal surface the way an adversary would — quiet and patient.

  3. Exploitation & lateral movement

    We chain vulnerabilities: from initial access to escalation and domain admin.

  4. Impact & evidence

    We demonstrate real impact, capture artifacts, and time every step.

  5. Debrief & remediation

    We deliver the prioritized runbook and follow remediation through to closure.

From the other side

What security leadership says

Umbra conducted the pentest with an excellent technical level and professionalism. The report was clear, objective, and provided evidence that made it easy for our team to prioritize the fixes. In addition to the quality of the delivery, the support throughout the process was agile and collaborative. I recommend Umbra for companies looking for high-quality and reliable security assessments.

Wellington · Qive

Company

Operators, not salespeople

Specialized operators delivering custom Pentest, Red Team, Phishing, Training, and CTF services tailored to your business.

Patrick Hammes

Founder & Pentester

Pentester for over 7 years, specializing in Web and Active Directory pentesting. Has worked on projects for the Brazilian Air Force (FAB).

Giancarlo Rigotto

Founder & Pentester

API, Mobile, and Web analysis, Linux environment specialist, and Malware Analysis enthusiast.

Operator credentials & compliance: OSCP · CEH · DCPT · LPIC-1

Blog

Research & field notes

Frequently asked

Before we talk

What is the difference between a pentest and a red team?
A pentest covers a defined surface looking for as many vulnerabilities as possible. A red team is objective-driven — reaching a critical asset — and also tests detection and response, stealthily.
Do you operate in production environments?
Yes, when authorized and within agreed rules of engagement. We prioritize safe operations with defined windows and continuous communication to avoid operational impact.
How long does an engagement last?
A targeted pentest usually takes one to three weeks. Full-scope red-team operations range from four weeks to a few months, depending on the objective.
What do we receive at the end?
A complete tactical intel report (debrief) with the operation timeline, reproducible evidence, impact assessment, and a prioritized remediation runbook — plus a walkthrough session with your team.
How do you guarantee confidentiality?
NDA before any work, encrypted artifacts, responsible disclosure, and data destruction on close. We operate under GDPR/LGPD.
Do we need a mature SOC before engaging?
No. We work with mature teams (in purple-team mode) and with organizations still building their defense — adapting the objective to your stage.

Find out before they do.

Scoped in a week. Irrefutable evidence. Contained before it ships.

Request engagement

{{ t.heroBadge }}

{{ t.heroTitle1 }}
{{ t.heroTitle2 }}

{{ t.heroSub }}

{{ t.capEyebrow }}

{{ t.capTitle }}

{{ t.capSub }}

{{ t.testEyebrow }}

{{ t.testTitle }}

{{ q.quote }}

{{ q.who }}
{{ t.teamEyebrow }}

{{ t.teamTitle }}

{{ t.teamSub }}

{{ member.name }} {{ member.initials }}

{{ member.name }}

{{ member.role }}

{{ member.cred }}

{{ t.certLine }}
{{ c }}

{{ t.blogEyebrow }}

{{ t.blogAll }} →
{{ t.faqEyebrow }}

{{ t.faqTitle }}

{{ f.a }}

{{ t.ctaTitle }}

{{ t.ctaSub }}

{{ t.formOk }}

{{ t.formErr }}

{{ t.ctaMeta }}
TACTICAL INTEL REPORT

{{ selectedDossier.title }}

{{ selectedDossier.subtitle }}

Executive Summary

{{ selectedDossier.summary }}

Attack Telemetry

{{ selectedDossier.details }}

UMBRA SECURE CHANNELS · CONFIDENTIAL
{{ t.close }}