News
usd AG Reappointed to the PCI SSC Global Executive Assessor Roundtable
usd AG has once again been appointed to the Global Executive Assessor Roundtable (GEAR) of the PCI Security Standards Council (PCI SSC). This means...
NIS-2 Incident Reporting Obligations: Deadlines, Reporting Criteria, and Requirements
A security incident occurs: within 24 hours, your organization must determine whether it is required to notify the German Federal Office for...
usd AG Globally Re-Accredited as an Approved Scanning Vendor (ASV)
usd AG has once again successfully received worldwide accreditation as an Approved Scanning Vendor (ASV) by the PCI Security Standards Council (PCI...
Bafin to Supervise AI in the Financial Sector: What Organizations Need to Know
Bafin has been assigned new authority to oversee AI systems in the financial sector. The legal basis is Germany’s AI Act Implementation Act, which...
Digital Omnibus on AI – What Changes Are Coming to the EU AI Act, and What Does This Mean for Businesses?
The EU AI Act remains in effect, but the timeline is shifting: with the “Digital Omnibus on AI,” the EU is making its first substantial changes to...
Security Advisories on Teamcenter and EcoStruxure Building Operation
The pentest professionals at usd HeroLab identified several vulnerabilities during a web application and fat-client penetration test. These include...
EPI Security Requirements v1.2 Released: Key Updates, Requirements and Impacts at a Glance
The European Payment Initiative (EPI) released Security Requirements v1.2 on 17.07.2026. The update focuses on governance, application security, and...
more security at TU Darmstadt: Another Award for Maximilian Müller
The Computer Science Student Council of TU Darmstadt has awarded Prof. Dr. Michael Waidner and our colleague Maximilian Müller as the best lecture...
DORA Implementation at the Pensionskasse der Frankfurter Sparkasse: When Regulatory Requirements Meet Small Institutes
All regulated financial institutions in Europe and their third-party ICT service providers face the same challenge regarding DORA: meeting a...
A5: BSI Publishes New Audit Framework for Trustworthy AI
The German Federal Office for Information Security (BSI) has published the Community Draft of the AI Audit and Assurance Assessment Architecture...
AI Vulnerability Storm: When a Lack of Speed Becomes a Risk
Current developments in AI systems show that vulnerabilities are found more quickly, suitable exploits are developed more quickly, and attacks are...
Bafin Publishes 9th Amendment to MaRisk
On 30 June 2026, all credit institutions and financial services institutions in Germany received an important circular: Following the consultation...











