#7ASecurity
Recently we completed a security audit of Thunderbird Send, our upcoming end-to-end encrypted large file sharing service, with the help of the @@ostifofficial.bsky.social and 7ASecurity. Learn how we're making Send worthy of your trust.

#Thunderbird #OpenSource

blog.thunderbird.net/2025/12/thund…
December 9, 2025 at 10:55 PM
For the past 3 years, we've been working on tools and protocols to monitor the health of the Tor network. 🩺 This work aims to strengthen the Tor network's resilience and resistance to relay attacks. These tools underwent a third-party audit; here are the results! blog.torproject.org/code-audit-n...
Code audit for the Tor Project completed by 7aSecurity | Tor Project
7aSecurity conducted a comprehensive code audit for several tools we use to monitor the health of the Tor network. This blog post outlines key recommendations and links to the full report.
blog.torproject.org
January 7, 2026 at 5:36 PM
📢 New 7ASecurity public #securityaudit report

🔒 Ouinet audited by 7ASecurity through a deep whitebox security assessment
7asecurity.com/blog/2026/05...

💬 Feedback welcome as always, props to @OpenTechFund for coordination

#CyberSecurity #OpenSource #SecurityAudit #PenTest #InfoSec
Ouinet audit by 7ASecurity - 7ASecurity Blog
Ouinet audit by 7ASecurity highlighting penetration testing, privacy review, and 26 vulnerabilities with confirmed fixes for critical issues.
7asecurity.com
May 27, 2026 at 4:43 AM
📢 New 7ASecurity public #SecurityAudit report
🔐 Bayanat audited by 7ASecurity: 43 findings & recommendations, all resolved & verified. ✅
🔗 7asecurity.com/blog/2026/09...
💬 Feedback welcome

#CyberSecurity #OpenSourceSecurity #AppSec #InfoSec #Bayanat
Bayanat audit by 7ASecurity - 7ASecurity Blog
7ASecurity audited Bayanat across web, API/auth, evidence workflows, deployment, fuzzing, supply chain, and threat modeling. Read the public report.
7asecurity.com
September 22, 2026 at 12:24 PM
📣New 7ASecurity public #securityaudit report
🔒@openssl_ DEfO audited by 7ASecurity
7asecurity.com/blog/2026/04...
Feedback welcome as always, props to @OSTIFofficial for coordination

#CyberSecurity #OpenSource #SecurityAudit #PenTest #InfoSec
DEfO audit by 7ASecurity - 7ASecurity Blog
7ASecurity audited DEfO's ECH patchset and OpenSSL Core Integration: 5 security-impact findings (2 high), 6 hardening recommendations, and a threat model.
7asecurity.com
April 14, 2026 at 12:38 PM
We’re proud to highlight @7ASecurity, an OWASP Platinum Supporter! For Black Friday, they’re offering the OWASP community 51% off any security course with code OWASP51 🎉

🔗 store.7asecurity.com...

#OWASP #AppSec #CyberSecurity #BlackFriday
November 20, 2025 at 10:12 AM
Get your learn on! #BlackFriday #Cybersecurity 7aSecurity course sale! Use 🎁TYMF51 for 5️⃣ 1️⃣ % off 🤯 api.cyfluencer.com/s/7asecurity...

💠 mobile (Android & iOS) apps 💠 modern web apps 💠 modern desktop apps (electron apps) 💠 and more! #InfoSec #Cyber #Learning #Students
November 28, 2025 at 8:30 PM
Back in March, the folks at @7asecurity.bsky.social performed an audit of #Incus. The details and report are now publicly available!
discuss.linuxcontainers.org/t/incus-publ...
Incus publishes independent security audit by 7ASecurity
Incus is publishing the results of an independent security audit performed by 7ASecurity and funded by the Sovereign Tech Agency. The review covered Incus v6.22.0 and combined whitebox testing, runtim...
discuss.linuxcontainers.org
September 8, 2026 at 6:41 PM
We “conda” believe it! In collaboration with 7ASecurity and @sovereign.tech, we carried out an audit of conda-forge. Read the details at our blog: ostif.org/conda-forge-...
conda-forge Audit Complete! – OSTIF.org
ostif.org
July 16, 2025 at 2:35 PM
We are building tech you can trust.

Thank you to @ostifofficial.bsky.social and 7A Security for their collaboration on the security audit for Thunderbird Send, our end-to-end encrypted file transfer service (coming to everyone soon, open source now).

blog.thunderbird.net/2025/12/thun...
Thunderbird Send Security Audit with OSTIF and 7ASecurity - The Thunderbird Blog
As we get ready for the Thunderbird Pro launch, we want every service we offer to be secure and worthy of the trust our community places in us. That means being honest about where we stand today and t...
blog.thunderbird.net
December 10, 2025 at 3:24 PM
📣 New @7ASecurity public #Pentest report
🔐 @dComms improves resilience with verified fixes, thanks to @OpenTechFund
4 issues identified (2 high) and remediated
Feedback is welcome enjoy 🙂
🔗 7asecurity.com/blog/2026/03...

#7ASecurity #CyberSecurity #OpenSource #dComms #infosec
dComms audit by 7ASecurity - 7ASecurity Blog
dComms security audit by 7ASecurity covering whitebox testing, vulnerabilities, and remediations for secure decentralized communication
7asecurity.com
March 31, 2026 at 12:37 PM
We are proud to announce our top 3 bugs of the year on our blog: ostif.org/bug-of-the-y...

#OSTIF #BOTY #7ASecurity
March 17, 2026 at 2:14 PM
📢 New 7ASecurity public #threatmodel report

🔒 Super Tanks lightweight threat model by 7ASecurity.

7asecurity.com/blog/2026/07...

💬 Feedback welcome as always.

#CyberSecurity #AI #InfoSec
Super Tanks lightweight threat model by 7ASecurity - 7ASecurity Blog
7ASecurity publishes a lightweight threat model for Super Tanks, highlighting defense-in-depth AI-agent governance, trust boundaries, and future hardening priorities.
7asecurity.com
July 7, 2026 at 12:09 PM
Sorry for the hiccup with our tag in the previous post! Our thanks again to @ostifofficial.bsky.social for their help with this important audit, which you can again read about in our blog post:

blog.thunderbird.net/2025/12/thun...
Thunderbird Send Security Audit with OSTIF and 7ASecurity - The Thunderbird Blog
As we get ready for the Thunderbird Pro launch, we want every service we offer to be secure and worthy of the trust our community places in us. That means being honest about where we stand today and t...
blog.thunderbird.net
December 10, 2025 at 5:06 PM
📣 New 7ASecurity public #securityaudit report
🔒 Requests, CacheControl & urllib3 audited by 7ASecurity
7asecurity.com/blog/2026/05...

💬 Feedback welcome as always, props to @ostif & Alpha-Omega for coordination

#CyberSecurity #OpenSource #SecurityAudit #PenTest #InfoSec
Requests, CacheControl and urllib3 audit by 7ASecurity
7ASecurity audited Requests, CacheControl and urllib3: 9 security-impact issues, 2 hardening recommendations, supply-chain review and guidance.
7asecurity.com
May 5, 2026 at 12:16 PM
📢 New 7ASecurity public #securityaudit report

🔐 KEDA audited by 7ASecurity through a whitebox security assessment
7asecurity.com/blog/2026/06...

💬 Feedback welcome as always, props to @OSTIF & @CloudNativeFdn

#CyberSecurity #OpenSource #InfoSec
KEDA audit by 7ASecurity
7ASecurity audited KEDA: 15 security-impact findings (4 high), 5 hardening recommendations, and SLSA supply-chain review for the CNCF project.
7asecurity.com
June 30, 2026 at 12:12 PM
@opentechfund.bsky.social's Security Lab partner 7ASecurity recently audited @greatfire.org's FreeBrowser to ensure the best security possible for users.

Learn more and access the full audit report:
buff.ly/1iblh71
December 18, 2025 at 4:02 PM
Learn more about the Círculo audit from @opentechfund.bsky.social’s Security Lab partner 7ASecurity:
Círculo – Security Audit
Círculo is a safety app built on the Matrix protocol that allows users to securely share location and safety updates with a trusted circle.
buff.ly
April 1, 2025 at 1:00 PM
OSTIF is proud to share the results of our security audit of Stork, an open source project developed by the Internet Systems Consortium (ISC) that acts as an administrative interface for monitoring, maintaining, and surveilling Kea servers.

ostif.org/stork-audit-...

#OSTIF #Stork #7ASecurity
March 3, 2026 at 3:28 PM
The Tor Project has completed a code audit conducted by 7aSecurity on tools used to monitor the health of the Tor network, identifying six vulnerabilities and eleven hardening recommendations.

blog.torproject.org/code-audit-n...
Code audit for the Tor Project completed by 7aSecurity | Tor Project
7aSecurity conducted a comprehensive code audit for several tools we use to monitor the health of the Tor network. This blog post outlines key recommendations and links to the full report.
blog.torproject.org
December 19, 2025 at 5:12 PM
OSTIF is proud to announce our audit of Mozilla Thunderbird-Send, with auditing by 7ASecurity. Not yet publicly released, this project will eventually be used in Mozilla email and web browsers. Read about the work done to prepare and harden this project at our blog: ostif.org/thunderbird-...
Thunderbird-Send Audit Complete! – OSTIF.org
ostif.org
December 9, 2025 at 3:30 PM
With the help of Ada Logics, 7ASecurity, and the Sovereign Tech Agency, this project received expert security review, testing, and custom documentation contributing to DEfO’s ongoing development and security.
April 8, 2026 at 1:54 PM
The Open Source Technology Improvement Fund is proud to share the results of our security engagement on Developing ECH for OpenSSL (“DEfO”).

ostif.org/defo-audit-c...

#OSTIF #DEfO #AdaLogics #7ASecurity #SovereignTechAgency
DEfO Audit Complete! – OSTIF.org
ostif.org
April 8, 2026 at 1:54 PM