Cold Hit
An unannounced stress test with minimal preparation. It exposes the most obvious weaknesses.
Physical security · OSINT · Black teaming
Black Team tests your physical security the way a real attacker would — with reconnaissance, social engineering and physical intrusion. You don't get a list of theoretical vulnerabilities. You get the way in we actually found.
We don't just test doors. We test the entire attack chain.
A lock can be good. A procedure can be sound. An employee can be alert. Attacks rarely succeed because one single link failed.
Small weaknesses. Normal routines. Practical workarounds. Combined, they can create a viable attack path — and that path is hard to see from the inside.
So we test the chain from open-source intelligence to the point where the objective is reached — and whether anyone noticed at all.
Services
The services build on each other. Start with a complete picture of your security level, or go straight to a realistic intrusion. The scope is always agreed in advance.
A baseline assessment of the whole security level
A systematic review of 200+ control points across eight categories, combined with controlled intrusion attempts. It gives you a quantitative score, photographic evidence and a three-phase action plan.
From DKK 47,500 excl. VAT · 4–5 working days
Read moreControlled, authorised intrusion
We genuinely attempt to gain unauthorised access to your facilities and assets using real-world attacker techniques — from reconnaissance and pretext to internal movement and a test of your detection and response.
From DKK 40,000 excl. VAT
Read moreIntelligence from open sources
What can an attacker find out about you before they even show up? We map your digital exposure, carry out background checks and threat assessments and examine the risk around key people — delivered as a source-critical report with confidence levels stated, not implied.
From DKK 1,350 per hour excl. VAT
Read moreBehaviour, conversation and security culture
Practical training in microexpressions, elicitation, counter-elicitation, statement analysis and behavioural profiling — for security staff, journalists and organisations that want to raise their security culture.
From DKK 4,995 per participant excl. VAT
See training0+
control points reviewed systematically in a Security Assessment
0
categories scored as a percentage, so you can measure improvement over time
0
steps in the attack chain — we don't stop at the first door
0+
years of experience from the Danish Frogman Corps sit behind the method
Scope
A physical penetration test comes at six levels. We increase preparation, creativity and persistence according to how capable an adversary you want to measure yourselves against. The level is agreed at the scoping meeting and stated in the quotation.
An unannounced stress test with minimal preparation. It exposes the most obvious weaknesses.
A planned engagement with OSINT beforehand and a prepared, credible cover story.
A multi-phase attack by a well-resourced actor combining several attack paths.
Attack angles beyond the ordinary. It exposes the blind spots in your response.
We deliberately stay below the radar. The question is not whether you notice, but when.
The attack widens to suppliers and partners with legitimate access to your buildings.
Fast and flexible
Rapid scoping and execution tailored to your objectives.
Experienced people
An operational background from an environment where security was never theory.
Actionable
Clear findings and prioritised recommendations, not a list without direction.
Discreet and secure
Strict confidentiality. Your data and your objectives are always protected.
Next step
A short conversation is enough to work out whether a Security Assessment or a full penetration test is the better fit. It costs nothing and commits you to nothing.