Cobalt LogotypeWhite

State of Pentesting in Financial Services 2025

The financial services industry has a unique challenge: while it has a low prevalence of serious vulnerabilities, it is among the slowest to resolve them, leaving organizations with a growing security debt. This slow pace of remediation can lead to significant organizational risks related to compliance and security. The State of Pentesting in Financial Services 2025 report analyzes thousands of pentests and surveys of security leaders to provide a definitive look into the industry's security posture. It uncovers why remediation is a key weakness and outlines a path forward for security leaders.

Download this report to gain insights into the specific factors hindering remediation efforts and discover:

  • Why the financial sector ranks well at preventing serious vulnerabilities but struggles to remediate them quickly, leading to a significant security debt.
  • The top security concerns of financial services leaders, including GenAI risks and third-party software as a primary attack vector.
  • Why the most common vulnerabilities found in the financial industry, such as sensitive data exposure and business logic flaws, are the kind that automated scanners miss.

The latest