SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
The CraftCMS plugin Two-Factor Authentication in versions 3.3.1, 3.3.2 and 3.3.3 discloses the password hash of the currently authenticated user after submitting a valid TOTP. Read More
We are pleased to share that Dhirendra Singh from CSIRO recently concluded a successful research visit at SBA Research. Invited by MATRIS Research Group of SBA, spent the end of May engaging in a productive collaboration with our researchers, especially the disaster research team, DEFSYS. Read More
We’re proud to share that SBA Research has been appointed as one of Austria’s few CVE Numbering Authorities (CNAs). This designation recognizes our commitment to cybersecurity excellence. With only three other authorities in Austria, being authorized as a CVE Numbering Authority underscores our expertise and dedication… Read More
Behind the Scenes: Exclusive Interview with Kevin Mallinger of SBA Research for CGTN TV. We are thrilled to share an exclusive behind-the-scenes look at the recent interview with Kevin Mallinger, researcher at SBA Research, for CGTN TV. This insightful interview dives deep into the major technological shift which forest fire risk assessment has ... Read More
At the beginning of April, the NERO COST Action members came together for the Working Group Assembly (April 3rd and 4th) and Management Committee meeting (April 5th) at the Impact Hub in Athens, Greece. DEFSYS Team lead Bernhard Garn participated as a Working Group and Management Committee… Read More
The project cooperation and partnership between Matris Applied Research Consulting (MARC) and Commend received a spotlight in the April issue of one of the most globally prominent magazines in cybersecurity: the Security System News. Last year, the lead of MARC, Reinhard Kugler, started… Read More
We are happy to share the outstanding news that Irene Hiess, part of the MATRIS Research Group, has successfully defended her master’s thesis on the fascinating topic “Exact Methods of Generation of Covering Arrays”. On March 13th, Irene Hiess showcased her expertise, dedication, and unwavering commitment… Read More
This year’s Hot Topics in the Science of Security Symposium (HotSoS 2024) was hosted by the NSA and took place virtually between April 2-4. Representing the CST team of MATRIS Research Group, Dominik Schreiber presented a poster titled “A Combinatorial Perspective towards Security Testing of Anonymity Networks”. Read More
On April 8, 2024, the MATRIS Research Group and the Energy, Climate, and Environment (ECE) research program members of IIASA convened for the ECE Seminar at the headquarters of IIASA at Schloss Laxenburg, while approximately 25 members from both parties participated remotely. Read More
Together with sipgate and ISMK Stralsund, Gabriel Gegenhuber, researcher at SBA Research and University of Vienna, and Michael Pucher, researcher at SBA research, discovered and investigated a vulnerability in the Voice of LTE (VoLTE) stack that is broadly used within MediaTek-based smartphones. ∞
In the Mediatek modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. ∞