About Services Methodology Security Lab Learning Hub Work Contact
Systems Online — Accepting New Engagements

We Break It Before They Do.

JASK Digital is a cybersecurity & QA studio out of Riyadh — penetration testing, black/grey/white box testing, SEO, web development, chatbots, and app & game testing, run by people who get paid to find what everyone else missed.

550+Approved Bugs
11Testing Depths
59Global Brands Tested
24/7Monitoring Mindset
jask@secure:~
Real projects & collaborations
Kilmers Group
AMWebTesting
Bug Reporter
Self Financial VRP
Amazon VRP
WisdomTree
Robinhood VRP
Crypto.com VRP
Saudia QA
Twilio QA
DAZN QA
Jarir Bookstore QA
Microsoft 365 QA
Cisco QA
Zoom QA
Monday.com QA
UserTesting.com UX
Kilmers Group
AMWebTesting
Bug Reporter
Self Financial VRP
Amazon VRP
WisdomTree
Robinhood VRP
Crypto.com VRP
Saudia QA
Twilio QA
DAZN QA
Jarir Bookstore QA
Microsoft 365 QA
Cisco QA
Zoom QA
Monday.com QA
UserTesting.com UX
CybersecuritySEOWebsite DevelopmentQA TestingBlack Box TestingGrey Box TestingWhite Box TestingChatbot TestingApp TestingGame TestingSecurity Testing CybersecuritySEOWebsite DevelopmentQA TestingBlack Box TestingGrey Box TestingWhite Box TestingChatbot TestingApp TestingGame TestingSecurity Testing
Engineer testing a web application
Live QA sessionCross-browser + security pass, in progress
Who we are

A small studio that thinks like an attacker and ships like an engineer.

JASK Digital started as one person finding bugs other testers missed — Abdul Moiz, a QA specialist and bug bounty researcher with disclosures against teams like Amazon, WisdomTree, Moveworks, and Self Financial. That same standard now runs through every engagement.

We cover the full stack of what "make it safe and make it good" actually requires: penetration testing, black/grey/white box QA, web development, SEO, and testing for chatbots, apps, and games — all documented the way a real audit should be, not a marketing deck.

Kali LinuxBurp SuiteOWASP ZAPNmapMetasploitPostmanSelenium
What we do

Seven disciplines. One accountable team.

Every service below is something we've billed real hours to — no filler capabilities, no "coming soon."

01

Cybersecurity

Penetration testing, vulnerability assessments, and hardening for web apps, APIs, and infrastructure.

Learn more →
02

SEO

Technical SEO audits, on-page structure, and performance fixes that actually move rankings.

Learn more →
03

Website Development

Fast, secure, custom-built sites — from marketing pages to full product front-ends.

Learn more →
04

QA Testing

Manual and scripted test passes across devices, browsers, and edge cases before you ship.

Learn more →
05

Black / Grey / White Box

Three testing depths — zero knowledge, partial access, or full source review — matched to your risk.

Learn more →
06

Chatbot Testing

Conversation-flow QA and basic chatbot builds for websites that need a working front line.

Learn more →
07

App & Game Testing

Functional, performance, and security testing across mobile apps and game builds.

Learn more →
08

Security Testing

Authentication, session, and access-control testing so the front door actually locks.

Learn more →
Methodology

Three depths of testing, picked on purpose.

Click a card — the depth you need depends on what access you're willing to give us and how much of the system we should already understand going in.

Black Box

Zero prior knowledge

We approach your system exactly as an outside attacker would — no source access, no credentials, no internal docs. This surfaces what's actually exposed to the internet today.

+ Expand

Grey Box

Partial access

We work with limited credentials or architecture notes — the same footing a low-privilege user or a partially informed insider would have. Good middle ground for most engagements.

+ Expand

White Box

Full source review

Full access to source, architecture, and infrastructure. Slower to start, but it finds logic flaws and misconfigurations black-box testing structurally can't reach.

+ Expand
Security Lab

What an engagement actually looks like.

The panel on the right is an illustrative walkthrough of how we structure a report — not a live scan of any real site. Every real engagement produces something in this shape: reproducible steps, severity, and a fix.

Recon & attack-surface mapping
Manual + automated exploitation attempts
Severity scoring & reproduction steps
Retest after your team ships a fix
Request a Sample Report
scan_report.jsonIllustrative — not a live scan
Auth & session handlingMedium
Input validation (forms)High
TLS / transport configLow
Access control (roles)Medium
Dependency versionsLow
Coverage
Learning Hub

We test attackers' tools, so we watch attackers' teachers.

A working shelf of real cybersecurity training we actually reference — embedded, not just linked.

freeCodeCamp.org

Full Ethical Hacking Course — Network Penetration Testing for Beginners

NetworkChuck

You Need to Learn Hacking Right Now // CEH (Ethical Hacking)

The Cyber Mentor

Ethical Hacking in 12 Hours — Full Course, Learn to Hack

The Cyber Mentor

Ethical Hacking in 15 Hours — 2023 Edition, Part 1

Professor Messer

Security+ SY0-701 Study Group — Live Q&A Session

Community Course

Master Ethical Hacking Full Course in 11 Hours

AM

Abdul Moiz

Founder & CEO · QA & Security Specialist
8+Years
550+Bugs Approved
11Test Depths
Founder & CEO

Bug Tester & QA Specialist, Web Developer & Designer.

Abdul Moiz has spent 4+ years finding bugs, breaking test builds, and reporting vulnerabilities that made it past every other reviewer. His work is behind real, verified disclosures — the kind that come with a case number, not a testimonial.

See the standard for yourself — his CEO portfolio at amwebtesting.com and the full disclosure archive at Bug Reporter are both live proof of how JASK Digital approaches every engagement.

Experience & Ecosystem

Verified work, not vague claims.

Split honestly into three tiers, so it's clear what's a direct JASK client versus a research disclosure versus a personal project.

Security Research Highlights
AmazonVulnerability Research Program — verified disclosure
WisdomTreeVulnerability Research Program — verified disclosure
MoveworksVulnerability Research Program — verified disclosure
Self FinancialVulnerability Research Program — verified disclosure
RobinhoodVulnerability Research Program — verified disclosure
Crypto.comVulnerability Research Program — verified disclosure
WhoopVulnerability Research Program — verified disclosure
NoonVulnerability Research Program — verified disclosure
IDEMIAVulnerability Research Program — verified disclosure
Capital.comVulnerability Research Program — verified disclosure
QA Testing & Bug Reports
SaudiaSaudi Arabian Airlines — QA test cases & bug reports
TwilioQA test cases & bug reports
DAZNQA test cases & bug reports
Jarir BookstoreQA test cases & bug reports
Microsoft 365 & OneDriveQA test cases & bug reports
CiscoQA test cases & bug reports
Microsoft TeamsQA test cases & bug reports
ZoomQA test cases & bug reports
Google MeetQA test cases & bug reports
Monday.comQA test cases & bug reports
Premier League platformsQA test cases & bug reports
Fitness & real estate appsQA test cases across both verticals
UX Research
UserTesting.comModerated interview sessions
UserTesting.comUnmoderated interview sessions
UX ResearchUsability findings & synthesis
UI Design ReviewInterface & interaction critique
Testing & Research Ecosystem
Freelance QAContract testing across web & mobile builds
Platform BountiesOngoing participation in public bug bounty programs
Bug ReporterPersonal portfolio of reported & reproduced bugs
AMWebTestingFounder's testing & QA services site
JASK Digital Projects
Kilmers GroupCinematic real estate & hospitality platform build
LUX FurnitureE-commerce build — case study on request
KSD CryptoPlatform build — case study on request
JASK DigitalThis site — our own front line
Selected Work

A few things we've shipped.

Web Build

Kilmers Group

A cinematic, five-division real estate & hospitality platform — the visual and animation reference for this very site.

Case study on request
Portfolio

Bug Reporter

Abdul Moiz's personal archive of reported and reproduced vulnerabilities across live programs.

bugreporter1.netlify.app ↗
Founder Site

AMWebTesting

The founder's dedicated QA and testing services site — bug tracking, reports, and process on display.

amwebtesting.com ↗
This Build

JASK Digital

Cybersecurity, SEO, web development and QA studio — the site you're on right now.

You're already here
Start a Project

Tell us what needs breaking — or building.

A short brief gets you a faster, more accurate quote. We reply within one business day.

Response TimeWithin one business day
Prefer email?Use the form — it routes straight to our team
Based inRiyadh, Saudi Arabia — working with clients globally
NDA-firstHappy to sign before any real access is shared
JASK AIrule-based
Hey — I'm the JASK AI assistant. Ask about our services, or tap a quick option below.