SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
Today starts the 9th International Conference on Availability, Reliability and Security (ARES 2014). ARES 2014 is organized by SBA Research in cooperation with the University of Fribourg and takes place from 8 – 12 September 2014 in Fribourg, Switzerland. Website… Read More
The Andrubis app is now available in Google Play Store. The work has been partly funded by uSmile and COMET. The work is part of Martina’s PhD research.
Today, SBA Research releases SSNOOB, a simple Java tool to create Social Snapshots of Facebook accounts, into the public domain. SNOOB serves three main purposes: Digital Forensics (Extract Facebook account data from forensic images via valid Facebook session cookies) Research (Extract Facebook account data for scientific studies ranging… Read More
Edgar Weippl gives a keynote on Advanced Persistent Threats & Social Engineering at the 11th International Conference on Security and Cryptography (SECRYPT 2014), wich takes place from 28 – 30 August 2014 in Vienna.
We are proud to announce, that our paper “IMSI-Catch Me If You Can: IMSI-Catcher-Catchers” has been accepted to the 2014 Annual Computer Security Applications Conference (ACSAC). In this paper, we identify and describe multiple methods for detecting artifacts in the mobile network produced by IMSI Catchers. IMSI Catchers are used… Read More
Dr. Artemios G. Voyiatzis, Associate Researcher, Industrial Systems Institute, “Athena” Research and Innovation Center in ICT, Greece gives a talk about “Security challenges in industrial systems”. Abstract Tuesday, June 26, 2014, 10.00 – 11.30 This event is hosted by the Vienna ACM SIGSAC Chapter. Read More
New paper “Send and Pretend: Exploiting Transcript Consistency Issues in End-to-End Encrypted Group Chats”, was recently accepted for the 35th USENIX Security Symposium. The paper is a collaboration between SBA, the University of Vienna, and the Interdisciplinary Transformation University Austria (IT:U). It was authored by Gabriel K. Gegenhuber, Moritz Grefner, Maximilian Günther, Matthäus Wininger, David Schmidt, and Aljosha Judmayer. ∞
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the assets (CVE-2026-16969), custom attributes (CVE-2026-18360) and datastore upload (CVE-2026-18361) functions. ∞
We are proud to celebrate the outstanding achievements of our researchers, who were recognized at the University of Vienna Faculty of Computer Science's Best-of-the-Best Awards on June 24. ∞