Skip to main content
Category

Insights

Rethinking Cybersecurity Certification for IoT – the DOSS Architecture Security Validator Platform Insights

Rethinking Cybersecurity Certification for IoT – the DOSS Architecture Security Validator Platform

By Yassine El Hadi, Red Alert Labs,  Ilias Kalouptsoglou and Pavlina Nikolakoudi, ITI-CERTH  Cybersecurity certification has long been one of the most difficult challenges in the IoT ecosystem. As connected systems become more complex, manufacturers and integrators are expected to comply with an expanding landscape of cybersecurity standards, regulatory frameworks,…
Building Trust in IoT: Inside the DOSS Component Tester Insights

Building Trust in IoT: Inside the DOSS Component Tester

By Ramon Barakat, Fraunhofer FOKUS As the Internet of Things continues to expand into nearly every sector—from smart homes and energy systems to automotive and industrial environments — security cannot be disregarded any longer. These systems are no longer isolated, they are complex ecosystems built from countless interconnected components, often…
Fuzzing for the CRA era Insights

Fuzzing for the CRA era

By Ramon Barakat, Roman Kraus and Martin Schneider, Fraunhofer FOKUS Recent incidents have shown how a seemingly small memory access bug can cascade into global disruption . With the EU’s Cyber Resilience Act (CRA) and the new Product Liability Directive, manufacturers of “products with digital elements” must deliver security by design,…
Are Large Language Models (LLMs) the key to accurate Vulnerability Detection? Insights

Are Large Language Models (LLMs) the key to accurate Vulnerability Detection?

By Miltiadis Siavvas,  Information Technologies Institute (ITI) of the Centre for Research and Technology-Hellas (CERTH) The increasing reliance of our everyday lives on software-intensive systems, renders their security an aspect of utmost importance. Hence, there is a strong need for advanced mechanisms for enabling the early identification and elimination of…
A simple coding mistake led to the CrowdStrike outage? Well, this is not surprising! Insights

A simple coding mistake led to the CrowdStrike outage? Well, this is not surprising!

By Miltiadis Siavvas,  Information Technologies Institute (ITI) of the Centre for Research and Technology-Hellas (CERTH) CrowdStrike disruption is an infamous incident that led to a global IT outage in July 2024, which is known to be one of the worst IT disruptions in history, described by analysts as “the largest…
Why the Cyber Resilience Act (CRA) matters for IoT manufacturers Insights

Why the Cyber Resilience Act (CRA) matters for IoT manufacturers

Dinesh Sharma, asvin GmbH The Importance of  the CRA The EU’s Cyber Resilience Act (CRA) sets strict cybersecurity requirements for all connected products, including IoT devices. For manufacturers, CRA compliance is essential to ensure secure, trustworthy, and market-ready products. From 2027 onward, only devices meeting these standards will be allowed…
OSCAL in Europe: A Foundation for the Digital Security Passport Insights

OSCAL in Europe: A Foundation for the Digital Security Passport

By Sara Nieves Matheu Garcia, University of Murcia, Department of Communications and Information Engineering Cybersecurity documentation is often scattered across reports, spreadsheets, and ad hoc formats, making it difficult to exchange, validate, or automate. The Open Security Controls Assessment Language (OSCAL), developed by NIST, addresses this challenge by providing a…