Allgemein

The Cyber Resilience Act (CRA) in relation to Pentests

Does the Cyber Resilience Act Make Penetration Testing Mandatory?

No — and yet hardly any manufacturer will get by without structured security testing. Why both are true at the same time, and what question really matters.

“Does the Cyber Resilience Act now require penetration testing?” — we’ve been getting this question for months. The honest answer is: No. And yet, for most manufacturers, there is no way around structured security testing. Both are true at the same time — and it’s precisely in this apparent contradiction that the point lies, one that many companies are still underestimating in 2026.

The Cyber Resilience Act (Regulation (EU) 2024/2847) is deliberately method-neutral. It does not name any specific testing technique — neither “penetration test” nor “fuzzing” nor “DAST” appear as […]

By |2026-08-10T15:53:14+02:007. August 2026|

Cisco IMC: When Remote Management Becomes a Backdoor – CVE-2026-20200

Out-of-band management systems are standard equipment in modern data centers. They allow administrators to manage servers even when the actual operating system has long since stopped responding – from a reboot through firmware updates all the way to a complete re-installation. Every manufacturer relies on their own ecosystem here: HP on „HP Integrated Lights-Out“ (HP iLO), Dell on „integrated Dell Remote Access Controller“ (iDRAC), and Cisco on the “Cisco Integrated Management Controller” (Cisco IMC). The latter is used on the widely deployed Cisco UCS C-Series rack servers and S-Series storage servers.

These systems are especially attractive from an attacker’s perspective: whoever controls the management controller effectively sits „below” the operating system. The IMC can update the BIOS, configure SecureBoot, and thereby interact directly with the operating […]

By |2026-08-10T15:20:17+02:005. August 2026|

33 Seconds — That’s How Long It Takes Before a New Web Server Comes Under Attack

Imagine opening a new shop — and before the sign above the door has even been hung straight, the first burglars are already at the entrance, checking whether the lock holds.

Anyone who has ever administered a web server is familiar with this phenomenon: such servers are constantly exposed to requests from automated crawlers and bots — often within just seconds of being brought online for the first time.

In this blog post, we want to look into where these bots come from and what they are searching for. We will also show some of the ways bots discover new web services in the first place, and how you can most effectively protect your web server against automated attacks.

[…]

By |2026-05-21T10:01:09+02:006. May 2026|

Hacktivism and Critical Infrastructure: A New Threat

Introduction

When the group Vulcan—presumed to be a pro-Russian hacktivist network—attacked Berlin’s power grid, no ransom was demanded and no data was stolen. The goal was simpler: to paralyze operations and send a high-profile message (Reuters). This is the defining characteristic of hacktivism. Hacktivists are driven by ideology and politics; their primary goal is visibility and sowing uncertainty in society.

Who Are These Hacktivists—and How Do They Differ?

Most organizations have tailored their cyber defenses to a familiar threat model: a profit-driven attacker who operates quietly, wants to remain undetected, and wants something your organization possesses—data, credentials, intellectual property. Hacktivists break this mold. Visibility is the goal, not risk. While conventional cybercriminals go to great lengths to remain undetected, hacktivists do the exact opposite. They publicly claim […]

By |2026-04-13T15:46:01+02:008. April 2026|

Cybersecurity in Sweden

Cybersecurity in Sweden 2025 – Hybrid Threats, NIS2 & Resilience Strategies

Introduction: Sweden’s digital strength meets new exposure

Sweden’s digital economy is among Europe’s most advanced – and most connected.

Public services, healthcare, and even maritime navigation depend on a seamless data flow.

But 2025 has also marked a turning point: since joining NATO, Sweden has become a visible node in the geopolitical network – and that visibility attracts unwanted attention.

Foreign-sponsored operations, ransomware campaigns against municipalities, and targeted disinformation now appear in parallel.

The question for Swedish organisations is no longer if they’ll be tested – but how prepared they are when it happens.

1. The geopolitical backdrop: a new reality for Swedish cybersecurity

Sweden’s alignment with NATO redefined its threat surface.

While state-sponsored cyber campaigns […]

By |2025-12-19T15:17:15+01:003. November 2025|
Go to Top