Security audit of mine operation systems, autonomous fleets, processing plants and railway logistics.
Why now
Mining mixes heavy OT (autonomous trucks, crushers, conveyors) with corporate IT and critical dam systems. Each failure can become an environmental tragedy with regulatory and criminal consequences for executives.
Applicable regulation
/attack-surface
Every engagement is designed for your environment. The points below are part of our standard playbook for this sector — final scope is adapted to your stack and contract.
Autonomous trucks and drills, V2X communication, dispatch systems.
Instrumentation systems, piezometers, inclinometers, alerts.
Plant DCS, crusher and classifier PLCs.
Loading systems, wagon dispatch and weighing.
Ventilation systems, gas sensors, underground communication.
/methodology
Automated scanners find what's documented. Real attackers find what isn't. 90% of the work is manual — performed by specialists holding OSCP, CISSP, CRTO and GPEN.
Target mapping, OSINT, footprint, sector-specific threat modeling.
Deep enumeration, complementary scanning, manual exposure identification.
Manual validation with controlled PoC, finding chaining, escalation.
Executive + technical, step-by-step replication, mapped to applicable regulation.
/why-trust
ArcelorMittal client — large-scale steel/mining.
Technical assessment recognized in highly regulated, mission-critical environments — the pentest that finds what nobody had found before.
Douglas Lopes
Founder · CEO · intrus.io
/faq
Yes. We audit dam monitoring systems per Law 14.066/2020.
Yes. We test V2X communication, dispatch systems and segregation between manned and autonomous fleets.
/contact
Schedule a confidential meeting. Within 48h we'll send a proposal with scope, timeline and pricing.