Our security team at @YSecurity has identified multiple vulnerabilities in TIM BPM Suite/TIM FLOW, allowing authorization bypass, privilege escalation, and SQL/HQL injection.
Advisory Mitigation: y-security.de/news-en/tim-bp…
Giving away one ticket for German OWASP Day 2025 incl. hotel night! 25.11 pre-event, 26.11 conference. Interested? Email us – first come, first served. Info: god.owasp.de/2025/ Already have a ticket? Meet the Y-Security team on site. #OWASP#GOD2025#GOD
We have publicly released our internal tool StealthGuardian at Black Hat USA 2024.
It can be combined with adversary simulation tools to verify the resistance, detection level and behaviour detection of defence mechanisms.
y-security.de/news-en/stealt…#bhusa#blackhat#redteam
Wir suchen derzeit zur Unterstützung Werkstudent:innen im Bereich Anwendungsentwicklung.
Wenn du Lust auf ein innovatives Unternehmen mit flexiblen Arbeitsmöglichkeiten hast, dann freuen wir uns, von dir zu hören.
#Werkstudent#Job#Germany#Business#Development
Are you taking steps towards a career as an Attack Simulation Specialist?
Maybe you already have experience as a Penetration Tester or with platforms like Hack The Box or certifications like OSCP?
If so, we would love to talk to you!
#job#redteam#pentest#germany
Our team recently took the challenge of mastering the Red Team Ops I and Red Team Ops II exam offered by @zeropointsecltd . After completion, we received both the Red Team Operator and Red Team Lead certifications.
Read our recent post: y-security.de/news-en/red-te…#RedTeam#RTO
Recently we checked the security of a LoRaWAN implementation. In our latest post we share insights about the security of LoRaWAN, common LoRaWAN attacks and how we built a custom methodology and testing environment.
y-security.de/news-en/securi…#pentest#lorawan#ysecurity
We have moved our twitter account to @YSecurity - All our new content will be available here. Followers have been moved to the new account. Thanks for following @YSecurity
Y-Security carries out projects in a climate-neutral way. Companies that work with Y-Security have the option of taking over a share to offset the CO2 produced in our projects too.
We have just claimed 2,98 tons CO2 via @compensatorsNGOcompensators.org/en/how-it-w…#climateaction
Y-Security will sponsor the German OWASP Day conference on the 30th and 31st of May 2023 in Frankfurt: y-security.de/news-en/german…
The German OWASP Day is the leading independent/non-commercial conference in Germany on application security.
Will you be there?
#GOD#OWASP#Y