The analysts at usd HeroLab examined the Foswiki application while conducting their security analyses. They identified vulnerabilities in...
News
BaFin Publishes 7th Update of MaRisk
Yesterday, an important regulatory circular reached all credit and financial services institutions in Germany: The German Federal Financial...
Internal audits according to ISO 27001 - Insights, tips and frequently asked questions
For many companies, preparing for ISO/IEC 27001:2022 (ISO 27001) certification is a major effort. But all the information security management system...
Getting Ready for BlackHat 2023 and DEF CON 31
We are pleased to present "FlowMate" and "SNC Scan", two of our in-house developments, at BlackHat 2023 and DEF CON 31, two of the largest events...
How do I evaluate the offer and quality of a pentest provider?
Nowadays, increasing numbers of security standards and norms require companies to conduct regular penetration tests (pentests for short). For...
How do I become a Security Consultant?
Are you passionate about cyber security and want to accompany other companies on their way to more security? What skills should you bring with you...
KRITIS: BSI Publishes Basic Requirements in the Verification Procedure
In May 2023, the BSI published binding regulations for KRITIS audits. These Basic Requirements in the Verification Procedure are based on §8a (5)...
Technical Security Analysis and Penetration Testing: usd AG Visits Technical University of Munich for Guest Lecture
On May 22, 2023, Matthias Göhring, Head of usd HeroLab, gave a guest lecture on the topic of technical security analyses and pentesting at TUM as...
How do I become an Auditor?
Are you passionate about both the technical and organizational aspects of cyber security and want to help companies improve their security as an...
Security Advisory for Tracim
The analysts at usd HeroLab examined the Tracim collaboration platform while conducting their security analyses. They identified a...
PCI DSS – What Is the Scope and How to Reduce It?
In this short series we provide you with useful facts about the Payment Card Industry Data Security Standard. Be well informed on your PCI DSS...
ASV Scans Under PCI DSS v4.0: Now Available via the usd PCI DSS Platform
The publication of the new version 4.0 of the PCI DSS in March 2022 has brought about not only terminological sharpening but also new...