Knowledge & News
September 5, 2025 |
by Robin Hermann
Shift-Left Security: From a stack of tools to a controllable security engine with ATLAS and mgm-sp at your side
Many organizations face the same pattern: few AppSec experts, many developers under high delivery pressure. When security …
September 4, 2025 |
by Maximiliane Mayer
IT Security – How successful companies securely master digitization
The digital transformation promises companies new opportunities for increasing efficiency, innovation and competitiveness. But without …
September 4, 2025 |
by mgm security partners
Security of Vaultwarden and Keepass analyzed for the BSI
Static Code Analysis (SAST) of Open Source Software On behalf of the German Federal Office for Information Security in the …
September 4, 2025 |
by Mirko Richter
LLM @ Source Code Analysis
Talk at the IT Security Summit: What do LLMs achieve in static code analysis for security? …
August 28, 2025 |
by Björn Kirschner
Identifying and Preventing Remote Code Execution (RCE) with Spring Expression Language (SpEL)
In a recent customer project, we discovered a critical security vulnerability related to Spring Expression Language …
August 14, 2025 |
by Jan Rude
Hardware and Firmware in Focus: Security Analysis of a Home Surveillance Camera (3/3)
When conducting security analyses of IoT devices, a closer look at the hardware is often worthwhile. In …

August 8, 2025 |
by Jan Rude
Hardware and Firmware in Focus: Security Analysis of a Home Surveillance Camera (2/3)
In the first part, we discussed how the firmware can be read from the device...
July 29, 2025 |
by Benjamin Weller
AnythingLLM under the Microscope: Identifying and Addressing Security Flaws
Cross-Prompt-Injection and Markdown-based data exfiltration are known vulnerabilities in LLM systems. We have identified these vulnerabilities in AnythingLLM …
July 25, 2025 |
by André Eikmeier
Drone Software Under Security Review: An Examination of “Drone Harmony for DJI Dock”
“Drone Harmony for DJI Dock” is an application developed by Drone Harmony AG that allows …
July 11, 2025 |
by Benjamin Weller
GenerativeAI for Developers
Talk on the Info Days of Sigs Datacom Large Language Models (LLMs) such as ChatGPT or …
What would you like to read?
What is it about?
