Compass Security is strengthening its presence in cyber education

10.06.2020 ‒ Offered at the HSR University of Applied Science in Rapperswil (Switzerland), the new degree programm is targeted at experienced IT professionals who... Read more

Compass Security am TEFO'17

29.11.2017 ‒ Am 23. November fand das Technologie Forum (TEFO'17) des Distributor Studerus AG statt. Compass Security war mit dabei - mit Live Hackings und ihrem... Read more

Hacker überzeugen Wirtschaftsexperten

26.01.2016 ‒ Pressemitteilung von Compass Security, 26. Januar 2016 Read more


Security Training: Secure Mobile Apps

In the 2-day course (in German) from October 20/21, 2020, you will learn about the most important security problems of mobile apps. Read more

Security Training: Social Engineering

In the 2-day course (in German) from December 1/2, 2020, you will get to know and understand the methods, tools and tricks of social engineering. Read more


Compass Security Blog

Yet Another Froala 0-Day XSS

Compass found a DOM-based cross-site scripting (XSS) in the Froala WYSIWYG HTML Editor. HTML code in the editor is not correctly sanitized when inserted into the DOM. This allows an attacker that can... mehr

Relaying NTLM authentication over RPC

Since a few years, we - as pentesters - (and probably bad guys as well) make use of NTLM relaying a lot for privilege escalation in Windows networks. In this article, we propose adding support for... mehr