Education Research Current About VU Amsterdam NL
Bachelor's programmes Master's programmes VU for Professionals
Exchange programme VU Amsterdam Summer School Honours Programme Dutch language courses (NT2) Semester in Amsterdam
PhD at VU Amsterdam Featured research Prizes and distinctions
Interdisciplinary research institutes Scientists of VU Amsterdam Research Impact Support Portal Create impact with your research
News Events calendar Moving towards a healthier future
VU UPDATE: Situation in Israel and the Palestinian regions Culture at VU Amsterdam
Practical matters Mission, core values and vision Entrepreneurship on VU Campus
Governance of VU Amsterdam Valorisation and impact Partnering with VU Amsterdam VU Alumni Community Take a look at our vacancies!
Sorry! De informatie die je zoekt, is enkel beschikbaar in het Engels.
This programme is saved in My Study Choice.
Something went wrong with processing the request.
Something went wrong with processing the request.

Research identifies hidden security flaws before they cause damage

Share
04 January 2026

Computer security researcher Brian Johannesmeyer has developed a new way to detect advanced cyberattacks earlier and more accurately by focusing not on a single flaw, but on the path data takes through a computer system.

His research shows that many serious digital incidents arise because sensitive or malicious data moves unnoticed through different parts of software and only causes harm after multiple steps.

Iather than viewing a cyberattack as one large incident, Johannesmeyer demonstrates that attacks are better understood as a chain reaction of small, seemingly harmless steps. By tracking and analyzing these steps individually, vulnerabilities can be discovered that traditional security methods often miss. Using this approach, thousands of previously unknown security flaws were identified in widely used software, including operating systems that form the backbone of servers and smartphones worldwide.

Fewer false alarms with this method
One key result is that this method generates far fewer false alarms than existing security systems. This makes the technique not only more accurate, but also more practical for developers and security teams. They can focus more effectively on real risks without being overwhelmed by alerts that ultimately turn out to be harmless.

Critical digital systems -such as those used in hospitals, energy infrastructure, cloud services, and personal devices- are becoming increasingly complex and interconnected. In such systems, small mistakes in handling data can have major consequences, ranging from data breaches to disruptions of essential infrastructure. By gaining better insight into how data flows through software, these risks can be identified and prevented at an earlier stage.

In practice, this means that security problems do not only come to light after an incident, but can already be detected during the development process. Developers can automatically test whether unauthorized or untrusted data could influence critical decisions within their software. In this way, the research contributes to more secure digital systems and reduces the risk of societal disruption caused by cyberattacks.

Johannesmeyer defends his PhD Januari 12 at Vrije Universiteit Amsterdam.

Contact the VU Press Office

Quick links

Homepage VU Amsterdam Culture at VU Amsterdam University Library Dashboard

Study

Academic calendar Study Guide Timetable Canvas

Featured

Donate to the VU Fund VU Magazine Ad Valvas Digital accessibility

About VU Amsterdam

Contact with VU Amsterdam Take a look at our vacancies! Faculties VU Amsterdam Divisions VU Amsterdam
Privacy Disclaimer Safety Web Colophon Cookie settings Web Archive

Copyright © VU