NEWS > Research Blog
December 11, 2019
X41 finished Unbound DNS Server Audit
X41 has finished auditing the unbound DNS server and is releasing the resulting report.
November 19, 2019
X41 finds Shell Injection in Unbound ipsecmod
X41 is currently auditing the unbound DNS server and found a severe issue that allows remote code execution in the opsecmod module.
October 02, 2019
X41 Teams up With Medical Tribune to Check the Security of Medical Practices in Germany
X41 had a look at the security level of medical practices in Germany
June 13, 2019
Advisory X41-2019-004: Type confusion in Thunderbird
Luis Merino of X41 discovered a type confusion in Thunderbird
June 13, 2019
Advisory X41-2019-003: Stack-based buffer overflow in Thunderbird
Luis Merino of X41 discovered a stack-based buffer overflow in Thunderbird
June 13, 2019
Advisory X41-2019-002: Heap-based buffer overflow in Thunderbird
Luis Merino of X41 discovered a heap-based buffer overflow in Thunderbird
June 13, 2019
Advisory X41-2019-001: Heap-based buffer overflow in Thunderbird
Luis Merino of X41 discovered a heap-based buffer overflow in Thunderbird
April 24, 2019
X41 BeanStack - Java Fingerprinting Database
X41 is proud to present X41 BeanStack - a Java Stacktrace Fingerprinting service - to the security community!
December 14, 2018
Advisory X41-2018-009: DoS Vulnerability in UA-Parser
Luc Gommans of X41 discovered a vulnerability in UA-Parser
December 04, 2018
Happy Holidays
Happy Holidays!
October 09, 2018
Firefox Updates
X41 D-Sec reviewed the Mozilla Firefox Update Process.
September 19, 2018
Researching The FAX Machine Attack Surface
X41 Researched into the security of FAX machines and identified remotely exploitable vulnerabilities.
August 11, 2018
In Soviet Russia Smartcard Hacks You
Imagine breaking into an IT-system by just inserting a manipulated smartcard.
June 19, 2018
X41 At Conferences in 2/2018
The X41 team will be at multiple conferences in the second part of 2018.
March 06, 2018
Wire Application Level Audit (with Kudelski Security)
X41 D-Sec's Markus Vervier and Kudelski Security's JP Aumasson reviewed the Wire application stack for Android, iOS, and Web.
March 01, 2018
How To Protect Against WebUSB U2F Phishing
X41 shows how to protect against attacks targeting U2F tokens via WebUSB.
February 03, 2018
Advisory X41-2018-005: Multiple Vulnerabilities in smartcardservices
Eric Sesterhenn of X41 discovered multiple vulnerabilities in smartcardservices
February 03, 2018
Advisory X41-2018-004: Off-by-one zero write in libykneomgr
Eric Sesterhenn of X41 discovered an off-by-one write in libykneomgr
February 03, 2018
Advisory X41-2018-003: Multiple Vulnerabilities in pam_pkcs11
Eric Sesterhenn of X41 discovered multiple vulnerabilities in pam_pkcs11
February 03, 2018
Advisory X41-2018-002: Multiple Vulnerabilities in OpenSC
Eric Sesterhenn of X41 discovered multiple vulnerabilities in OpenSC
