Project shortcuts
On behalf of a university in northern Germany, we conducted a security audit of its external IP areas. The English-speaking campus university has over 1,800 students from more than 120 countries and is characterized by its interdisciplinary research approach. The aim of the project was to identify potential vulnerabilities in publicly accessible systems and to create a sound basis for targeted measures to increase IT security. A particular challenge was the large number of systems that had to be structured, analyzed, and evaluated within a tight time frame.
Methodical approach to vulnerability analysis
The project was divided into two main phases:
-
Reconnaissance (information gathering)
Identification of the university's externally accessible systems.
-
Schwachstellenanalyse und Reporting
Technical testing for known security vulnerabilities, followed by preparation of the results in a structured report including recommendations for action.