When Threats Lurk in the IT System
When Threats Lurk in the IT System
Ne-Trust Researches New Defense Approaches Against Insider Threats
On September 22, 2026, the Cyberagentur will host a virtual event to bring together potential research partners for the planned research program “Negative Trust Architectures” (Ne-Trust). Ne-Trust aims to develop new approaches to detect insider threats in IT systems earlier and defend against them more proactively than established Zero Trust concepts allow. At the partnering event, companies, startups, universities, and research institutions will gain insights into the research objectives and have the opportunity to network for joint interdisciplinary projects.
Threats to IT systems do not arise solely from external attacks. Internal perpetrators often already possess legitimate access rights and can therefore move relatively unnoticed within IT infrastructures. They can explore systems, misuse information, or cause damage. Insider threats can arise maliciously, negligently, or through collusion. Compromised user accounts can also allow attackers to assume the role of a supposedly legitimate insider.
With the planned research program “Negative Trust Architectures” (Ne-Trust), the Agentur für Innovation in der Cybersicherheit GmbH (Cyberagentur) aims to investigate how such threats can be detected more reliably and defended against more effectively.
On Tuesday, September 22, 2026, from 2:00 p.m. to 5:00 p.m., the Cyberagentur will host a virtual partnering event on this topic. It is aimed at companies, startups, universities, and research institutions involved in IT security architectures, cyber defense, or related technical, social, and legal areas of expertise.
When Legitimate Access Becomes a Security Risk
Established security concepts such as Zero Trust are fundamentally based on the assumption that no access should be automatically trusted. Identities and authorizations are continuously verified, access rights are restricted, and IT systems are more heavily segmented. These principles can significantly increase the resilience of digital infrastructures.
However, insider threats pose particular challenges. Individuals or compromised accounts may already possess valid permissions and thus initially appear to comply with the rules. Even key foundational documents such as the NIST SP 800-207 guideline point to remaining gaps and the need for further research.
In addition, artificial intelligence is changing the threat landscape. AI-powered methods can automate attacks, make deceptions more credible, and exploit vulnerabilities in a more targeted manner. Such developments also affect IT systems in government, defense, and security agencies.
Negative Trust as a Distinct Research Approach
Ne-Trust addresses these limitations of existing security concepts. Adopting a technology-neutral and interdisciplinary approach, the project aims to investigate and develop independent Negative Trust paradigms as well as corresponding reference architectures for IT systems. The goal is not merely to exercise greater control over access. Rather, the research will focus on how systems can detect suspicious behavior within their own structures and respond to it more proactively.
The effectiveness of such approaches against various forms of insider threats will be investigated, made measurable, and demonstrated through technical implementations. In addition to technical issues, social impacts and legal frameworks will also be taken into account.
Negative Trust is not yet a scientifically established IT security paradigm. Initial conceptual approaches exist, for example, in the area of so-called deception technology. This technology specifically employs elements of deception to detect attackers, observe their behavior, or divert them away from relevant system areas. However, a comprehensive scientific and interdisciplinary examination of Negative Trust as an independent security paradigm has yet to take place.
Ne-Trust aims to address this research gap. “In this context, the research program introduces the concept of Negative Trust into scientific discourse for the first time,” explains Felix Dotzauer, program director and research officer in the Department of Cybersecurity for Complex Systems. “This will enable us to explore new approaches to IT security architectures at an early stage - that address insider threats more effectively, rethink the defensive capabilities of IT systems, and thus go beyond today’s protection concepts.”
Partnering Event Brings Together Diverse Expertise
The program’s broad scope requires diverse perspectives. The Partnering Event is therefore designed to bring potential research partners together and support the formation of interdisciplinary consortia.
Following a presentation by the Cyberagentur and the Ne-Trust research program, participants will have the opportunity to present their areas of expertise in two-minute presentations. This will help highlight areas of expertise, identify points of overlap, and lay the groundwork for potential partnerships in future research projects.
Registration for the Partnering Event is open through September 16, 2026, via the following link. Participants who wish to present during the event should send their presentation slides to ne-trust@cyberagentur.de by September 18, 2026, at the latest.
Further information and registration for the Partnering Event:
https://www.cyberagentur.de/programme/ne-trust/
Press contact:
Agentur für Innovation in der Cybersicherheit GmbH
Große Steinstraße 19
06108 Halle (Saale)
Michael Lindner
Press Officer
Phone: +49 151 44150 645
Email: presse@cyberagentur.de
Background: Cyberagentur
The Agentur für Innovation in der Cybersicherheit GmbH (Cyberagentur) was founded in 2020 by the German Federal Government as a wholly owned in-house entity of the federal government under the joint leadership of the German Federal Ministry of Defence and the Federal Ministry of the Interior, with the aim of adopting an application-strategy-oriented and interagency perspective on internal and external security in the field of cybersecurity. Against this backdrop, the Cyberagentur’s work is primarily aimed at the institutionalized implementation of highly innovative projects that carry a high risk with regard to achieving their objectives but, at the same time, have the potential to be highly disruptive if successful.
The Cyberagentur is an integral part of the Federal Republic of Germany’s National Security Strategy.
The Cyberagentur is led by Prof. Dr. Christian Hummert, Scientific Director, and Bettina Bubnys, Commercial Director.
Wissenschaftlicher Ansprechpartner:
Felix Dotzauer, program director and research officer in the Department of Cybersecurity for Complex Systems
Originalpublikation:
https://www.cyberagentur.de/en/press/when-risks-lurk-in-the-it-system/
Weitere Informationen:
https://www.cyberagentur.de/programme/ne-trust/
Ähnliche Pressemitteilungen im idw