Websec is a company focused on helping secure the Web and your organization's valuable data. We are based in Victoria, BC, Canada but we have worked with clients from all over the world. We are the best at making remote information security projects work and we would love to keep adding successful stories to our list.
Our expertise is forged by our continuing commitment to explore the cutting edge of today's security challenges, and the growing roster of our grateful clients is a testament to our ability to design and execute successful solutions.

A penetration test simulates an attack from outside and provides a rigorous examination of potential and actual vulnerabilities, including software flaws, faulty system configurations, insufficiently robust countermeasures, and more.
Don't wait until it's too late – if an actual attack is your first penetration test, the losses you sustain will be all too real!

A source code audit is a systematic examination of the source code of your Web application, in order to reveal vulnerabilities that can lead to potentially debilitating breaches of security, whether accidental or malicious in nature.
A Websec source code vulnerability audit is the first line of defense in keeping you safe and secure.

When your network suffers an attack, you need to know as soon as possible – any delay can result in a data breach, damage to your network, and losses that could prove to be catastrophic.
The automatic detection abilities of a monitoring service can provide the difference between stopping an attack as it happens, and being vulnerable to a huge loss.

Simple employee negligence accounts for nearly nine in ten occurrences of data breach in the workplace. An innocent mistake can result in massive losses, not only of money or data, but corporate reputation and customer loyalty.
Network security is too important to leave to chance, get your employees trained in security awareness today.
Bypassing Web Application Firewalls with SQLMap Tamper Scripts
An introduction to SQLMap's new tamper scripts and how the can be used to bypass Web Application Firewalls and Intrusion Detection Systems.
Posted in SQL Injection WAF SQLMap Tamper Scripts Firewall
Optimized Blind MySQL Injection Data Retrieval
Demonstrates a method to extract data from a MySQL database using blind injection in fewer requests than currently known techniques such as the Bisection and Bit Shift method.
Posted in Blind Injection MySQL SQL Injection Database
mac2wepkey - Huawei default WEP generator
Huawei HG520 and HG530 routers are vulnerable to weak cipher attacks. It is possible to generate the default WEP/WPA key. The purpose of this post is to explain the process of developing a key generator for these devices.
Posted in mac2wepkey home gateway wep generator echolife hg530 huawei hg520
Apr 30, 2012
GuadalajaraCON 2012 by Websec
Mar 21, 2012
Conference on Cyberbulling at Westhill Institute
Websec had the opportunity to speak with students at the Westhill Institute about Cyberbulling and the threat it brings to young adults.