
Siemens AG Issues €330M Tokenised Bond on Blockchain — Audited by Softstack
Softstack audited the smart contracts for Siemens AG’s €330M tokenised bond, settled via central bank money on institutional blockchain rails.
Everyone can talk. We prefer to let our work and our clients speak for us. Get to know us and see the difference.
All of our team members are full-time employees — no freelancers, no outsourcing, no uncontrolled risks.
No hidden fees or vague estimates. We mostly work on fixed-price projects and deliver what we promise, without excuses.
Since 2017, we have been building cutting-edge solutions in Web3, AI, and enterprise-grade digital solutions.
Headquartered and operating fully in Germany, ensuring high standards, data protection, and reliability.
Clear updates, short response times, and full transparency throughout the project.
You work directly with our leadership. The CEO is personally involved, and we operate with a lean, effective scrum-based approach for speed and clarity.
Rated by clients on
You'll find the following service aspects in our offer.
Defining the scope and goals of the penetration test, including systems to be tested and testing methods to be used.
Collecting data on target systems, networks, and applications to identify potential entry points and vulnerabilities.
Identifying and prioritizing potential threats to the system, helping to focus the penetration test on relevant attack vectors.
Attempting to breach the system using vulnerabilities found during the analysis phase. This could involve bypassing security controls, escalating privileges, or extracting sensitive data.
Providing a plan to address and mitigate the discovered vulnerabilities and improve overall security.
Penetration testing is a methodical examination of a system's security to identify vulnerabilities. For Web3 projects, it is crucial to proactively assess and strengthen defenses against potential cyber threats.
While regular security measures focus on prevention and protection, penetration testing actively simulates real-world attacks to uncover vulnerabilities, providing a dynamic and comprehensive assessment.
Penetration testing should be performed regularly, especially after significant updates or changes. It is recommended to schedule tests at least once a year or when there are significant changes to the system.
Yes. We tailor scope for Web3 stacks, financial ICT, and regulator-driven programmes such as DORA Article 26 testing or VARA annual assessments.
Standard penetration testing is typically shorter and technically scoped. TLPT is intelligence-led red teaming of critical functions, often required for DORA-designated entities or when VARA notifies a VASP. See our Threat-Led Penetration Testing service for that path.