Cyber Security

Welcome to the Oskar Frech GmbH + Co. KG Product Security Incident Response Team (OF-PSIRT)

The Oskar Frech Product Security Incident Response Team (OF-PSIRT) is the central point of contact for reporting and handling potential vulnerabilities and security-related incidents involving products from Oskar Frech GmbH + Co. KG.

The OF-PSIRT coordinates the assessment and investigation of reported vulnerabilities and works with the relevant internal departments to determine the necessary measures. For confirmed vulnerabilities, the team publishes appropriate security advisories as soon as suitable remediation measures or recommended actions are available.

If you discover a potential vulnerability in one of our products, please report it to the OF-PSIRT.

Your report helps us identify potential risks at an early stage, respond appropriately, and continuously improve the cybersecurity of our products. By reporting vulnerabilities, you help strengthen the long-term security of our products and the systems associated with them.

Latest Security Advisories

This page provides an overview of all published security advisories. Follow the relevant link to view the full information and further details for each advisory.

Security advisories are available in English only.

Currently no security advisories.

Report a Vulnerability

If you discover a potential vulnerability in a product, solution, or system of Oskar Frech GmbH + Co. KG, please report it to us using the contact form below. You may submit a report regardless of whether you are a customer, business partner, security researcher, or otherwise affiliated with Oskar Frech. In general, no separate non-disclosure agreement (NDA) is required to report a potential vulnerability.

Our goal is to assess reported vulnerabilities in a structured manner and work with the relevant internal departments to develop appropriate remediation or risk-mitigation measures. As our products and systems may form part of industrial equipment and production environments, we kindly ask you not to publicly disclose information about potential vulnerabilities without consulting us first.

Please use the form below to submit your report and provide as much relevant information as possible to support our assessment and investigation of the potential vulnerability.

Details of the person reporting the fault

Name of the person reporting the fault
Customer name
Email address
Telephone number

Report details

Date received
Time
Machine type concerned
Machine number
Control system manufacturer
Software system manufacturer
Software Version (if possible)