Request a project consultation
BLUECANVAS / SECURITY

AI-ASSISTED SECURITY AUDIT

SECUREWHAT’S NEXT.

Review today. Protect what comes next.

An AI-assisted, manually verified review of server configuration and known vulnerabilities.

Request a review
SCROLL TO EXPLOREREAD-ONLY REVIEW HUMAN-VERIFIED

Your service evolves. Your security review should too.

Make hidden risksvisible.

From open ports to outdated plugins, we review actual configuration and logs to identify your next steps.

01

Read-only

diagnostics · no unapproved changes

02

Temporary account

removed as soon as the audit ends

03

Schedule

scope and delivery date agreed after intake

04

Configuration changes

performed only after client approval

Three perspectives. One clear review.

LAYER 01 / INFRASTRUCTURE

System configuration review

We inspect sshd_config, sudoers, account and file permissions, firewall rules, and exposed services, recording evidence for risky settings.

SSH hardeningPrivilege analysisReporting

LAYER 02 / APPLICATION

Code and secret review

We inspect application source and configuration files for exposed secrets, unsafe permissions, outdated CMS components, plugins, and known vulnerability candidates.

Web app risks.env reviewCMS plugins

LAYER 03 / EXPOSURE

Log and exposure review

We review authentication logs, open ports, running services, and package versions to find repeated failures, unnecessary exposure, and pending updates.

Log analysisAnomaly detectionTimeline review

※ AI-flagged items are included in the report only after they are checked against actual server settings and public evidence.

30CHECKS
12 REVIEW AREAS

30 checks, with no blind spots

We break 12 security areas into 30 specific checks and clearly show what each plan covers. Diagnostics are performed safely over SSH with read-only commands.

Included checks · 30 / 30

01

SSH hardening

  • LRoot login · password authentication · default port exposure
  • SAllowUsers · PubkeyAuth · ClientAlive · 2FA settings
  • PDeep review of SSH key permissions and exposed authorized_keys files
02

Firewall / ports

  • LFirewall status (ufw · iptables · firewalld)
  • LExternally exposed TCP and UDP ports
  • S0.0.0.0 bindings · unnecessary services · rule consistency
03

Package & kernel CVEs

  • LKernel CVE matching and boot option review
  • SCVE matching for major installed packages and exposed versions
  • PFull CVE matching · public exploit availability · patch order
04

Accounts & privileges

  • LDuplicate UID 0 · empty passwords · login-capable accounts
  • SOverprivileged sudoers and wheel / admin groups
  • PUnused and service accounts · recent login history
05

File permissions

  • L/etc/shadow · /etc/passwd · web root · .env permissions
  • Psetuid · setgid · possible PATH hijacking binaries
06

Web server · PHP · DB

  • LServer version exposure · directory listing · expose_php
  • SMySQL bind-address · default accounts · remote access
  • SPHP security settings (disable_functions · open_basedir · sessions)
07

SSL / TLS

  • LCertificate expiry · chain validation · self-signed certificates
  • STLS 1.0 / 1.1 and weak protocol status
  • SWeak cipher suites · HSTS · OCSP stapling
08

Log analysis

  • SBrute force, dictionary attack, and scan traces in auth.log
  • PSuspicious IPs and attack patterns in web access logs
09

Defense controls

  • Lfail2ban and crowdsec installation status
  • SActive jails · ban history · custom filter review
10

Cron & suspicious jobs

  • PFull review of crontab · at · systemd timers
  • PRoot cron · @reboot · external script execution
11

CMS-specific checks (WordPress)

  • PCore · plugin · theme CVE matching
  • Pwp-config · admin accounts · REST API · file editor
12

Backups & exposed assets

  • LPublic exposure of /.git · /.env · phpinfo · phpMyAdmin
  • POff-site backups · restore testing · DR scenario review

THE DELIVERABLE

From findings to next steps.

Understand what we found, why it matters and what to address first in an evidence-based report.

  1. 01Evidence
  2. 02Risk level
  3. 03Action priority

Timing depends on server count and agreed scope.

BLUECANVASIllustrative review

CONFIDENTIAL / SAMPLE

SECURITY
AUDIT REPORT↗

SERVER REVIEW001 — 030
HIGHSSH / AUTHENTICATION
MEDIUMNETWORK / EXPOSURE
EVIDENCE → PRIORITY → NEXT STEP01 / 08
01

Agree on scope

Share your environment and preferred plan. We confirm scope, timing and cost before proceeding.

02

Set up access

We provide a temporary audit-account guide. Access is removed immediately after the review.

03

Run the audit

We prioritize read-only commands and verify AI-assisted findings against actual settings and public evidence.

04

Report / remediation

We return a PDF risk matrix and recommended-action estimate. Remediation is optional.

A clear scope. A clear price.

From a focused diagnostic review to remediation, subscriptions, and incident response. Start with one server and pay only for what you need.

LITE01

Lite

10 essentials — core exposure and configuration review

₩99,000/server

VAT excluded · ₩60,000 per additional server

Apply
  • 10 essential checks covering SSH, firewalls, kernel CVEs, accounts, TLS, and exposed assets
  • Risk ratings: high / medium / low
  • PDF report · schedule confirmed after intake
  • Surface-level diagnostic scope
PRO03

Pro

All 30 checks — penetration simulation and 6-month recheck

₩690,000/server

VAT excluded · ₩420,000 per additional server

Apply
  • Standard 20 + 10 deep checks = all 30 items
  • Deep areas: cron · WordPress · backup/DR · public exploit availability
  • Read-only penetration simulation recreating realistic attack paths
  • One free recheck within 6 months, including post-remediation validation

₩400,000 per additional hour · VAT excluded

Security Assessment / INTRODUCTION

See it in action

Explore the key features and how to use them.

1:23Korean audio & captions

Frequently asked questions

01

How is an AI-assisted server audit different from a conventional audit?

We use AI as an assistant to quickly organize configuration and log items worth checking.

The final report records verifiable evidence such as actual settings, version information, public CVEs, and logs. A person reviews priorities and potential false positives.

02

Is it safe to provide SSH access?

We recommend adding our public key to a time-limited temporary audit account. Diagnostics prioritize read-only commands, and any configuration change requires separate approval.

After the review, we guide you through removing the temporary account and registered key.

03

Will the audit affect server operation?

We prioritize read-only commands and low-load checks. Work that could add load, such as large log analysis or external scans, is scheduled and scoped in advance.

Actual remediation, such as installing fail2ban or rebuilding TLS, proceeds only after client approval and is documented before and after.

04

When will I receive the report?

Timing depends on the number of servers, log scope, web services, and CMS configuration. We confirm the available audit window and report date after reviewing the intake.

Emergency response is scheduled separately after we confirm the current situation and access.

05

Can you audit WordPress sites?

Yes. Our WordPress-specific review covers core-version vulnerabilities, known plugin and theme CVEs, wp-config.php permissions, admin accounts, wp-admin protection, REST API exposure, and XML-RPC status.

We also match the vulnerability history of popular plugins such as Elementor, WooCommerce, and Contact Form 7 against CVE databases.

06

Can you remediate the vulnerabilities you find?

Yes. Remediation is optional. The report includes an estimate for each item: A small ₩90,000, B medium ₩250,000, or C large from ₩690,000. You can select only the items you need.

Clients who purchase a diagnostic report receive 10% off remediation rates. Urgent work can also be billed hourly at ₩250,000.

07

Do you support cloud servers such as AWS Lightsail, EC2, and Naver Cloud?

Yes. We support most IaaS environments with SSH access, including AWS EC2 and Lightsail, GCP Compute Engine, Azure VM, Naver Cloud, NHN Cloud, KT Cloud, and Oracle Cloud.

Docker and Kubernetes hosts can include container-level checks when access is available. Managed services without host access, such as RDS, Aurora, and managed Redis, require a separately agreed IAM-based scope.

08

Should I choose a one-time audit or monthly monitoring?

If you do not yet have a clear baseline, start with a one-time Lite ₩99,000 or Standard ₩249,000 audit.

For commerce, membership, payment, and other high-impact services, the strongest combination is an initial audit followed by monthly monitoring from ₩129,000 for new CVEs and configuration drift.

What we can and cannot do

Supported

  • Linux/Unix

    (Ubuntu, Debian, CentOS, RHEL, Amazon Linux, and more) — all 30 checks

  • macOS servers

    supported when SSH access is available

  • Windows Server

    partial PowerShell-based review when OpenSSH Server is enabled

  • WordPress / general PHP CMS

    full core, plugin, and configuration review

  • Docker / container hosts

    containers included when host access is available

  • AWS Lightsail / EC2 / GCP / Naver Cloud

    broad IaaS support

Limited / excluded

  • Managed services

    (RDS, Aurora, managed Redis, and similar) — no host access; IAM-based scope requires separate discussion

  • Network appliances

    (firewalls, routers, switches) — quoted separately

  • Aggressive penetration testing

    (brute force, exploit execution, DoS) — not performed due to cloud TOS risk

  • Systems you do not own or administer

    requests are refused

  • Zero-downtime guarantee

    diagnostics prioritize low-load queries; changes require user approval

  • Legal disputes or litigation support

    outside the security-audit scope

YOUR SECURITY STARTS WITH VISIBILITY.

Start with a review.

Tell us about your servers and concerns. We will agree on scope and timing.

Request a review

Contact

A rough idea is a good place to start.
Let’s shape your project together

Tell us where you are and what you want to achieve. We’ll outline a practical scope, process, and estimated budget.

4 questions · about 2 minutes

Scope

What would you like to work on together?

Select as many as apply. If you are not sure yet, choose “Other”.

We pre-selected ‘서버 보안 점검’ to match the page you were viewing. You can change it or add more.

Budget

What budget range do you have in mind?

Even a rough range helps us shape the proposal.

Project details

Tell us where you are right now.

It does not need to be polished. Tap an item below and the outline is filled in for you.

0

Upload up to 2 RFPs or reference files. Supported: PDF, PPT, Word, Excel, JPG, PNG, ZIP

Contact

Where should we reply?

Scope, budget, project details and contact information are required.