SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
Mathias Gusenbauer successfully defended his master thesis on “Bitstream – A Bottom-Up/Top-Down Approach to Data Loading for Interactive Bitcoin Visualizations” on June 4, 2018.
Kristoffer successfully defended his master’s thesis “Efficient Algorithms and Tools for Practical Combinatorial Testing” advised by Dimitris E. Simos, at the Faculty of Informatics of TU Vienna. Kristoffer gave an excellent presentation and graduated with distinction. Read More
Today, Matthias Eckhart speaks about “Towards Security-Aware Virtual Environments for Digital Twins” at the “4th ACM Workshop on Cyber-Physical System Security”, taking place at the Songdo Central Park Hotel in Incheon, South Korea. Read More
Our paper “Proof-of-Blackouts? How Proof-of-Work Cryptocurrencies Could Affect Power Grids” by Johanna Ullrich, Nicholas Stifter, Aljosha Judmayer, Adrian Dabrowski and Edgar Weippl has been accepted at the International Symposium on Research in Attacks, Intrusions and Defenses (RAID). Our work investigates whether cryptocurrencies are a threat for reliable power grid operation… Read More
Computers & Security welcomes submissions to the special issue on Security and Privacy in Smart Cyber-physical Systems. Important Dates: Submission deadline: 30 November 2018 Authors’ notification: 31 January 2019 Revisions due: 30 April 2019 Final decision: 30 June 2019 Camera ready version due: 30 September 2019 Tentative publication… Read More
Our book Blocks and Chains: Introduction to Bitcoin, Cryptocurrencies, and Their Consensus Mechanisms (Aljosha Judmayer, Nicholas Stifter, Katharina Krombholz, Edgar Weippl) has been translated into Korean. Read More
Edgar Weippl offers three talks with ACM’s Distinguished Speaker program. Blockchains & Distributed Ledger Technology Secure Development Lifecycle of Production Environments Improvement of Security of Information Processing in the Industrial Production System Lifecycle… Read More
Thomas Konrad held a workshop on “real security starts where frameworks end” at the WeAreDevelopers World Congress 2018 in Vienna. Presentation slides can be found here
Power plants and many other industrial plants are an integral part of a country’s critical infrastructure. As systems become more automated and networked and complicated software systems control entire systems, IT security is playing an increasingly important role. Previous attacks have mostly exploited existing vulnerabilities, future attackers will strive to… Read More
New paper “Send and Pretend: Exploiting Transcript Consistency Issues in End-to-End Encrypted Group Chats”, was recently accepted for the 35th USENIX Security Symposium. The paper is a collaboration between SBA, the University of Vienna, and the Interdisciplinary Transformation University Austria (IT:U). It was authored by Gabriel K. Gegenhuber, Moritz Grefner, Maximilian Günther, Matthäus Wininger, David Schmidt, and Aljosha Judmayer. ∞
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the assets (CVE-2026-16969), custom attributes (CVE-2026-18360) and datastore upload (CVE-2026-18361) functions. ∞
We are proud to celebrate the outstanding achievements of our researchers, who were recognized at the University of Vienna Faculty of Computer Science's Best-of-the-Best Awards on June 24. ∞