We break your applications and AI before attackers do.
Shura Labs is a specialist offensive-security consultancy focused on application and AI/LLM security testing — senior specialists, deep manual work, findings you can actually act on.
Freeor run our automated API security diagnostic in ~2 minutes — no strings.
- CriticalIndirect prompt injection → cross-tenant data exfiltration
- HighBroken object-level authorization (IDOR)
- MediumWeak session handling on the SSO callback
Focused disciplines
// Services
Assessments across the full application & AI attack surface
Every engagement is senior-led and manual-first. Select a discipline to see what it covers — or ask the assistant in the corner which one fits what you're building.
Focused on the application, AI & identity layer — the software and models you build and ship.
// Methodology
Rigorous where it counts, creative where it matters
We pair recognized testing standards with real attacker creativity — structured enough to be thorough, adversarial enough to find what checklists miss.
Manual-first, automation-assisted
Scanners give us breadth; senior humans give us the findings that matter. The vulnerabilities that actually get you breached — broken authorization, business-logic abuse, chained exploits, prompt injection — are found by hand.
Threat-led, not checklist-led
We model your specific attack surface and abuse cases first, then test against them. A checklist tells you what everyone checks; a threat model tells you how you actually get attacked.
Evidence-based & reproducible
Every finding is manually verified, reproduced, and documented with steps and evidence — scored by CVSS and, more importantly, real business impact in your context. No unverified scanner noise.
Safe by default
Testing is non-destructive and authorized, run in coordinated windows with clear rules of engagement. Critical issues are escalated the moment we confirm them — never held back for the report.
Aligned with
// How we work
A clear engagement, from first call to validated fixes
No black boxes. You know what's happening at every stage — and critical issues reach you in real time, not buried in a report weeks later.
- 01
Scope & kickoff
We align on targets, access, rules of engagement, and timeline — and agree on what "done" looks like before any testing starts.
- 02
Threat model & recon
We map your attack surface and the abuse cases that actually matter for your app, data, and users — so effort goes where the real risk is.
- 03
Manual assessment
Senior specialists test and exploit by hand, chaining weaknesses the way an attacker would. Critical findings are reported the moment we confirm them — you never wait for the final document.
- 04
Prioritized reporting
Every finding comes with a severity rating, real business impact, clear reproduction steps, and concrete remediation guidance — ordered so you know what to fix first.
- 05
Debrief & remediation support
We walk your engineers through the findings, answer questions, and help shape the fixes — a working session, not a document hand-off.
- 06
Retest & validation
Once you’ve remediated, we re-test each issue and confirm it’s truly closed — then issue a validation you can share with customers and auditors.
Continuous engagements loop steps 2–6 on every release — same process, always on.
Discuss scope →// Engagement models
Work with us the way that fits your team
Every model is senior-led and fixed-fee — scoped to your target, with no surprise hourly billing. Not sure which fits? We'll help you decide.
Fixed-scope assessment
A defined, point-in-time pentest of a specific target.
Best for
Compliance, product launches, one-off validation
- Scoping call + rules of engagement
- Senior-led manual assessment
- Prioritized report with remediation
- One retest of remediated findings
- Letter of attestation on request
Continuous / PTaaS
Always-on testing that keeps pace with your releases.
Best for
Teams shipping frequently
- Ongoing coverage across your release cycle
- Live findings feed with severity & status
- Rapid retests as you ship fixes
- Change-triggered testing on major releases
- Direct line to the testers
Security partner / retainer
A standing AppSec & AI-security team you draw on.
Best for
Teams wanting ongoing expertise on tap
- A block of testing days you allocate as needed
- Architecture & design reviews
- DevSecOps & CI/CD guidance
- On-call support for launches
- Quarterly posture reviews
Pricing is scoped to your target and shared up front as a fixed fee — request a quote.
// Deliverables
Reports written to be fixed, not filed
You get a report your engineers will actually use and your leadership can actually read. Here's what's in every one — and a sample of the depth you can expect.
- 1
Executive summary
A plain-language overview for leadership: overall risk posture, key themes, and what to prioritize — no jargon required.
- 2
Risk ratings
Every finding scored with CVSS and, more importantly, real business impact in your context — not just a scanner severity.
- 3
Detailed findings
Reproduction steps, evidence, and affected components for each issue, so your engineers can confirm and fix without guesswork.
- 4
Prioritized remediation
Concrete, actionable guidance ordered by what to fix first — tailored to your stack, not copy-pasted boilerplate.
- 5
Retest attestation
After you remediate, a validation of what’s closed — a document you can share with customers and auditors.
Indirect prompt injection → cross-tenant data exfiltration
- Summary
- The support assistant ingests customer-uploaded documents into its RAG context without isolating them from instructions. A crafted document causes the agent to invoke its
lookup_accounttool against an arbitrary tenant and return the result. - Business impact
- Any customer can read another customer's account data by uploading a single file — a direct multi-tenant confidentiality breach with clear regulatory exposure.
- Reproduction
- Sign in as a standard tenant user.
- Upload
invoice.pdfcontaining the embedded instruction shown in Appendix B. - Ask the assistant to "summarize my invoice."
- Observe the response includes account data for
tenant_id=1002.
- Remediation
- Treat retrieved content as untrusted data, never instructions. Enforce tenant scoping in the tool layer (server-side), not via the prompt. Add allow-listed tool arguments and log/deny cross-tenant lookups.
Want to see a full sample report?
We'll share a complete, sanitized example so you know exactly what to expect. (Sample content shown is a draft for illustration.)
// Why Shura Labs
Small by choice. Specialist by design.
Big firms sell breadth and headcount. We sell depth and the specific expertise that modern application and AI systems actually need.
Request an assessment- 01
Senior specialists only
No junior hand-offs, no report-generator scans. Every assessment is run by experienced offensive-security engineers who test by hand and think like an attacker.
- 02
AI-security depth most firms lack
Prompt injection, jailbreaks, RAG manipulation, tool and agent-workflow abuse — offensive AI/LLM testing is a first-class discipline here, not a checkbox bolted onto a web pentest.
- 03
Direct, hands-on attention
You get direct access to the people doing the work, engagements scoped to your actual risk, and findings written to be fixed — not padded to fill a page count.
How is Shura Labs different from a big pentest firm?
You work directly with senior specialists who test by hand — not a junior running a scanner against a template. We go deep on a focused set of disciplines (application, AI/LLM, mobile, API, cloud app layer) instead of selling breadth and headcount.
Can you test our LLM / AI features specifically?
Yes — it’s our core specialty. We test prompt injection (direct and indirect), jailbreaks, RAG and retrieval manipulation, tool and function-call abuse, and agent-workflow security. Most pentest firms still can’t cover this; we treat the model, its prompts, its retrieval layer, and its tools as one attack surface.
Do you test production or staging?
Either — we agree on it during scoping. Testing is non-destructive and run in coordinated windows. Many clients prefer a production-like staging environment with representative data; where production testing is needed, we scope it carefully with clear rules of engagement.
How do you handle our data and credentials?
We work under a mutual NDA, collect the minimum access required, store credentials in a secrets manager, and use least-privilege test accounts that are revoked when the engagement ends. Client data is deleted after a short retention window. See our Trust & Security page for the full detail.
Is a retest included?
Yes. Fixed-scope assessments include one retest of remediated findings so you can confirm issues are truly closed. Continuous and retainer engagements include ongoing retesting as you ship fixes.
Do you provide a letter of attestation for compliance?
Yes. We provide a letter of attestation suitable for SOC 2, ISO 27001, PCI DSS, and customer security reviews, plus the detailed technical report your engineers need to remediate.
How long does an assessment take?
It depends on scope, but a typical focused assessment runs one to two weeks of testing plus reporting. We confirm the timeline during scoping — and critical findings reach you in real time, not only at the end.
Are you remote? Do you work with teams outside Mexico?
Yes. We’re based in Monterrey, MX and work remotely with teams internationally. Engagements are run over secure channels, and reporting is delivered securely.
// Free · no obligation · ~2 minutes
Curious where your API stands? Find out for free.
Run our automated API security diagnostic against a system you own. It flags the obvious, high-signal issues in minutes — and, just as usefully, shows you exactly what an automated pass can't catch. No jargon, no payloads, no surprises.
- Non-intrusive — GET/HEAD/OPTIONS only
- Just your work email + API URL
- Full report emailed privately
// Contact
Request an assessment
Tell us what you're building and what worries you. A specialist will reply within one business day to scope it with you.
Book a free 30-minute intro callGrab a time that works — straight to a specialist, no form to fill.Or reach us directly
hello@shuralabs.io- Reply within one business day
- Fixed fee, scoped up front — no hourly surprises
- Everything under a mutual NDA
Attestation for