NEWS > Research Blog
June 11, 2025
X41 Audited Ruby on Rails
X41 releases the audit report of Ruby on Rails.
May 22, 2025
X41 Audited nghttp3 and ngtcp2
X41 releases the audit report of nghttp3 and ngtcp2.
April 02, 2025
How can X41 D-Sec help with the new Digital Operational Resilience Act (DORA) framework?
What is the Digital Operational Resilience Act (DORA)? Learn more about this regulation and how X41 can help you achieve compliance.
April 02, 2025
How can X41 D-Sec help with the new Digital Operational Resilience Act (DORA) framework?
What is the Digital Operational Resilience Act (DORA)? Learn more about this regulation and how X41 can help you achieve compliance.
March 24, 2025
X41 Audited RSTUF
X41 releases the audit report of RSTUF.
March 20, 2025
Advisory X41-2025-001: Multiple Vulnerabilities in OpenSlides
X41 discovered multiple vulnerabilities in OpenSlides
March 12, 2025
Intro to Tabletop Exercises (TTX)
What is a tabletop exercise (TTX) and why your company should run one.
March 10, 2025
X41 Reviewed Hickory DNS
X41 finished auditing Hickory DNS and releases the resulting report.
December 17, 2024
Happy Holidays
Happy Holidays!
December 16, 2024
X41 Audited Backstage
X41 finished auditing the Backstage platform and releases the resulting report.
December 11, 2024
X41 Reviewed Mullvad VPN
X41 releases the audit report of Mullvad VPN
September 12, 2024
Advisory X41-2024-003: DoS Vulnerability in Chilkat ASN.1 Decoder
X41 discovered a vulnerability in Chilkat's ASN.1 decoder
September 09, 2024
Advisory X41-2024-002: Multiple Vulnerabilities in Antragsgrün
X41 discovered multiple vulnerabilities in Antragsgrün
June 24, 2024
X41 Audited Eclipse Cyclone DDS
X41 releases the audit report of Eclipse Cyclone DDS
May 21, 2024
Using power side channel for fuzzing coverage
X41 explores using power side channels for fuzzing coverage guidance.
April 09, 2024
Chilkat PRNG Vulnerability Impact on E2EE Messenger ginlo
A proof of concept for how the vulnerability in Chilkat's PRNG impacted an app using it.
April 03, 2024
Advisory X41-2024-001: Weak Chilkat PRNG
The Chilkat library generated secret key material using a pseudorandom number generator not designed for cryptographic purposes. Attackers observing a sufficient number of outputs can recover past and future outputs of it. This includes, for example, key material generated with it, allowing attackers to decrypt or alter data protected by the key material.
April 01, 2024
X41 announces first product
X41 announces the companys first product - A CVSS calculator that scales!
February 13, 2024
X41 Source Code Audit of ISC BIND 9
X41 releases the code audit report of BIND 9
November 09, 2023
X41 Audited Rust-VMM
X41 reviewed Rust-VMM
