Publications

Publications

We produce relevant publications on security challenges and market developments. Our white papers, synopses and articles provide in-depth analyses and expert perspectives that help industry leaders make informed strategic decisions. The publications can be freely reused by the public for non- commercial purposes, provided the authors and SSE are credited and any editing is excluded.

Green Fern

Teetje Stark

Apr 18, 2024

FIDO2 Hardware Authenticators and Operating System Logins

FIDO2 Hardware Authenticators and Operating System Logins

Insecure defaults often lead to vulnerable implementations. This blog post explores such an insecure default in the Node.js crypto...

Green Fern

Teetje Stark

Apr 18, 2024

Abusing insecure defaults: Forging ciphertexts under Galois Counter Mode for the Node.js crypto module

Abusing insecure defaults: Forging ciphertexts under Galois Counter Mode for the Node.js crypto module

Insecure defaults often lead to vulnerable implementations. This blog post explores such an insecure default in the Node.js crypto...

Green Fern

Teetje Stark

Jul 23, 2023

SVG Security Risks - not just a scalable graphic

SVG Security Risks - not just a scalable graphic

SVG Security Risks - not just a scalable graphic

Yellow Flower

Carsten Sandker

May 16, 2023

Active Directory Spotlight: Attacking The Microsoft Configuration Manager

Active Directory Spotlight: Attacking The Microsoft Configuration Manager

This spotlight covers the Microsoft Configuration Manager (ConfigMgr), also known as SCCM or MECM. Get an intro into the Configuration Manger...

Orange Flower

André Tschapeller

Apr 26, 2023

Building a Red Team Infrastructure in 2023

Building a Red Team Infrastructure in 2023

Purple Flower

Bastian Kanbach

Apr 3, 2023

A fresh look at user enumeration in Microsoft Teams

A fresh look at user enumeration in Microsoft Teams

User enumeration in Azure Active Directory environments is an important step in attack simulations. This blog post revisits how user...

Lilac Flower

Carsten Sandker

Aug 3, 2025

Offphish - Phishing revisited in 2023

Offphish - Phishing revisited in 2023

Talk to our experts

How can we help?

We are happy to help you with the strategic planning and concrete implementation of your project in the area of IT and information security.

Berlin Office

Hauptstraße 3 | 10827 Berlin

Contact info

Talk to our experts

How can we help?

We are happy to help you with the strategic planning and concrete implementation of your project in the area of IT and information security.

Berlin Office

Hauptstraße 3 | 10827 Berlin

Contact info

© SSE – Secure Systems Engineering GmbH