EULYNX Introduction Course: A Step Towards Standardized Signaling in Railways

In December, I completed the EULYNX introduction course at the EULYNX Academy. This course represents the initial level of training. EULYNX Academy Certificate – EULYNX What is EULYNX? EULYNX is an initiative among European railway infrastructure managers. Its main objective is to establish a modular signaling architecture featuring standardized interfaces. More information can be found…

Railway Safety Standards: An Overview

Railway safety is a critical aspect of transportation that ensures the protection of passengers, staff, and infrastructure. Adhering to established safety norms is essential for minimizing risks and enhancing the reliability of railway systems. This blog post will explore key European railway safety standards EN 50126, EN 50128, and EN 50129. Safety measures are essential…

Railway Security standards

In this post, I delve into the most relevant standards that secure our railway systems. Using Europe and Germany as a case study for the local and national level of standards, the following infographics provides a comprehensive overview of the most relevant standards helping to increase security on the tracks. 📄 Download infographics as pdf:…

From a theoretical scenario to dangerous reality

Since February 2022, cybersecurity threats to railways in the European Union have changed fundamentally: nation-state actors are no longer a theoretical possibility, but a dangerous reality. Russia is trying to sabotage European railways, warns Prague 💡 We therefore need to increase the resilience of the railway system against attacks by very capable attackers with access…

CVE-2024-3094: Why the xz-utils backdoor is more than a technical issue

Despite the Easter holidays, a lot of incredible work was done over the weekend by many researchers analysing the details of the xz-utils backdoor. Some examples are: As the situation unfolds, it is becoming clear that this was not just one of the most sophisticated technical (perhaps the most sophisticated) attempts to introduce a backdoor…

CVE-2024-3094: xz-utils backdoor

The newly discovered xz-utils backdoor, which was published yesterday (NVD – CVE-2024-3094 (nist.gov)) also affects one of the Linux distributions most used by penetration testers: Kali Linux. ❗Make sure, that you are updating your Kali installations as fast as possible, especially when you updated them before in the time frame between 26.03.2024 and 29.03.2024. 💡For…

Next conference: Nürnberg

Today I’ve registered for attending the “CNA Forum Bahn+BahnTechnik 2024” conference with the title “Unlocking the opportunities of railtech” CNA Forum Bahntechnik | CNA – Center for transportation & logistics Neuer Adler e.V. (c-na.de) My personal focus for the conference will be the topics around the digitalisation of the railways and how to develop the…

Are Bluetooth Headsets Secure in the Era of Remote Work?

Since the onset of the COVID-19 pandemic, the world has seen a significant shift towards remote working. This shift has led to an increase in virtual meetings and, as a result, the use of Bluetooth headsets for convenience. But one question arises – are these Bluetooth headsets secure? To understand the security of a typical…