Blog

IT Security

Distributed IP Blocking with Graylog

This article explores how I designed and built the detection engine behind a distributed automated IP blocking platform using Graylog. By centralising logs from multiple Docker Swarm nodes, correlating suspicious HTTP activity across the entire infrastructure, and identifying reconnaissance patterns instead of isolated events, the platform can detect malicious behaviour in real time. This detection layer forms the foundation of an automated response system that blocks persistent attackers across every server in the cluster while minimising false positives.

Read More »
IT Security

10 Things you shouldn’t do

…when you’re online!

In everyday digital life, small mistakes constantly creep in, often without us even noticing them. One wrong click here, a weak password there, and suddenly it happens. An account gets hacked, private (possibly even embarrassing) photos disappear and/or are published, and in the worst-case scenario, your bank account is emptied as well.

The good news is that data loss is often not caused by a technical problem at all, but rather by poor habits that can be changed quite easily!

Not everyone is a cybersecurity expert, in fact, only a small minority of people who use the internet are. This makes it all the more important to recognize common risks yourself instead of leaving the responsibility solely to the professionals.

Read More »
IT Security

One String to Rule Them All!

Why Using One Password Everywhere Is Dangerous – and How to Do It Safely with a Password Manager

Most people effectively use just one password or slight variations of it. A capital letter here, a number there, and at some point it starts to feel “secure enough”. It’s convenient and easy to remember, which is exactly why so many people do it. But is it safe?

In 2026 a password is no longer just a simple login credential. It is often the key to your entire digital life. Email, social media, cloud storage, online shopping and even banking are all tied to it in one way or another. If that one password gets exposed, it is rarely just a single account that is affected. In most cases it is everything at once. That is also why password reuse is still one of the most common and at the same time most underestimated security problems today.

(A string is a sequence of characters made up of letters, numbers, and special characters, e.g. a password)

Read More »
IT Security

Can AI Replace Traditional Penetration Testing?

Over the past year, a growing number of tools have emerged promising “AI-driven” penetration testing, fully automated security assessments that claim to deliver results comparable to human testers, at a fraction of the cost and time.

For many organizations, the appeal is obvious:

  • Faster testing,
  • lower cost,
  • continuous coverage.

But this raises an important question, can AI driven tools replace traditional penetration testing?

To answer that, it’s worth understanding what a penetration test actually is, and what isn’t.

Read More »
IT Security

SME Security & Compliance Guild — Launch Event (Vienna)

Secure early, scale smoothly 

Join us for the first public event of the SME Security & Compliance Guild, a free after-work meetup in Vienna for startups and SMEs that want to strengthen cybersecurity, improve resilience, and approach compliance in a practical way. 

Over the past year, we have hosted similar sessions in smaller, closed circles. Since the response has been so positive, we are now opening the format to a wider community. 

We will meet at the OSM Solutions office in Vienna for an evening of expert insights, discussion, and networking.

Read More »
Compliance

Key Lessons from Prague: Securing the Modern Stack

At the Prague panel discussion on “Securing the Stack: Cybersecurity, Cloud and Platform Integrity,” one message stood out clearly:

security is no longer an add-on — it is the foundation of modern platforms.

As cloud environments grow more complex, risks increasingly stem from misconfiguration, fragmented ownership, and speed-driven deployment. Ultimately, platform integrity has become business integrity, and even the strongest technology depends on people, processes, and accountability to truly succeed.

Read More »
Services

Ready for Red Teaming?

Red teaming is often seen as the pinnacle of offensive security: A simulated, no-holds-barred attack that tests your organization’s detection and response capabilities in real-world conditions. But while it’s tempting to jump into red teaming for the prestige or thrill, the timing matters. Starting too early, or without the right foundations, can lead to wasted effort, misunderstood results, or even dangerous blind spots. It’s not just about breaking in, it’s about seeing how well your defenses hold up and whether your team knows how to respond. Without the right preparation, the real lessons can be missed.

So when is your organization actually ready for red teaming?

Read More »
Going Dark or Going too far?
IT Security

From Backdoors to “Upload Moderation”: Is Your Privacy Under Attack?

Are We Trading Privacy for Policing?

The EU’s “Going Dark” group says it’s about helping law enforcement tackle digital crime. But dig a little deeper, and things get murky. With talk of encryption backdoors, data retention revivals, and pressure on tech companies to play surveillance middlemen, critics warn we’re inching toward mass surveillance. Austria’s already setting the stage with its own plans to monitor messenger apps. Is this really about security, or are we breaking the very tools that protect our privacy? Let’s unpack it.

Read More »
Security Bug
Compliance

EUVD vs. NVD

With the EU Vulnerability Database launching and the CVE program hitting turbulence, the global vulnerability disclosure ecosystem is in transition. Here’s what it means for your security team.
In early 2025, the cybersecurity world got a wake-up call. The CVE Program, which underpins the U.S. National Vulnerability Database (NVD), came close to a shutdown due to a funding lapse. The contract between the U.S. government and MITRE, the operator of the CVE program, was set to expire on April 16, threatening the continuity of a system that’s foundational to global vulnerability tracking.
Though a last-minute extension was secured, the incident highlighted the fragility of the CVE infrastructure, and the ripple effects that budgetary instability can have across global security operations.

Read More »
Red Team VS Blue Team, TLPT
IT Security

Threat-Led Penetration Test (TLPT): What and Why?

Cyber attacks continue to evolve in both sophistication and frequency, forcing organizations to rethink how they approach security testing. Traditional methods like vulnerability scanning or one-off penetration tests still play an important role, but they often fall short in capturing how a real-world attacker would behave, especially one with time, resources, and specific intent. As a result, many organizations are beginning to shift away from generic, checklist-style assessments in favor of more focused, scenario-driven approaches that reflect the current threat landscape.
One such approach gaining significant traction, particularly in regulated sectors like finance and critical infrastructure, is known as Threat-Led Penetration Testing (TLPT). But what exactly is TLPT, where did it originate, and how does it differ from traditional penetration testing or red teaming?

Read More »

Get In Touch

If you are interested in our services or just want to talk about Information Security, Risk or Compliance, just contact us!

Get a Quote!