NordVPN Completes Advanced Security Audit

The penetration testing was performed by VerSprite, a global leader in cybersecurity consulting and advisory services.

NordVPN home

NordVPN has recently completed a client security testing. A penetration testing was performed by VerSprite, a global leader in cybersecurity consulting and advisory services. And NordVPN is pleased with the results, which can be verified by its users from the User Control Panel.

How was the audit performed?

The basis of VerSprite’s penetration testing methodology is simulating real-world attack scenarios and threats by using PASTA (Process for Attack Simulation and Threat Analysis). The PASTA method consists of a seven-stage process for manufacturing attacks and analyzing threats to the NordVPN environment to minimize risk and the associated impact on the business. During the test, VerSprite auditors focused on breaching confidential user data, identifying high-impact vulnerabilities that could lead to IP leaks, and overall privilege escalation.

On the record

“During the test, VerSprite found no critical vulnerabilities. One vulnerability was given a high severity score, and the rest received a medium to low severity score. These vulnerabilities were mitigated for each platform in scope,” said Daniel Markuson from NordVPN. “This further proves NordVPN’s reliability and focus on user security, and addressing key security elements will help us keep the highest standards in the industry and improve even more.”

“Independent audits are one of the necessary elements to maintaining high-security standards and ensuring that our users’ trust in us is well-founded,” added Daniel Markuson, a digital privacy expert at NordVPN.

The context

This is not the first third-party audit of NordVPN’s service; in fact, it was the first to perform an audit of its no-logs policy. Said audit was performed by PricewaterhouseCoopers AG, a Big 4 auditing firm and one of the most dependable and capable auditors in the world.

As for VerSprite, it is an operational risk management and security consulting firm that specializes in helping track high-profile threats, understand security risks and the related business impact, and improving cybersecurity postures.

About NordVPN

NordVPN is one of the biggest VPN providers in the world, offering strong encryption with advanced privacy features. Based in Panama, it is part of Nord Security which aims to offer an all-around cybersecurity solution. As of this writing, NordVPN has more than 14 million internet users worldwide.

NordVPN
Our score:
Price from: $3.71/mo
30-day money-back guarantee

Pros

Cons

  • 5,000+ servers in the network
  • Easy to use - install it and forget it
  • One license is good for up to 6 devices
  • Strict zero-logs policy
  • 30-day money-back guarantee
  • Chrome extension is just a proxy
  • You can't pay with PayPal