SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
One of our Key Researchers, Johanna Ullrich, was interviewed for the ORF "Dok1" documentary "Nichts geht mehr: Sieben Tage ohne Strom" about an experience of a one-week-blackout. Read More
The Crypto Valley Conference 2021 took place from October 28 - November 5 2021 in a hybrid version. Nicholas Stifter presented his short paper "What is Meant by Permissionless Blockchains?". Read More
The paper Application Profile for Machine-Actionable Data Management Plans is a great summary of work made by the RDA DMP Common Standards working group, chaired by Tomasz Miksa, Senior Researcher at SBA Research. It describes the methodology to develop the common standard for machine-actionable Data Management Plans and presents existing adoptions of the recommendation. Read More
On October 19th Tomasz Miksa held an online talk for 75 participants about how to make data FAIR. The talk was part of the event series “Research Data Management in Austria” which is aimed at researchers and / or people involved in research support and serves… Read More
SBA Research is partner of ovos play and was involved in the development of the free Cyber Security Quiz with the aim of promoting digital competencies in the field of cyber security. On October 18th this Cyber Security Quiz won the eAward 2021 in the category “Education and… Read More
Two SBA researchers will be presenting their current resilience research activities during the virtual Disaster Research Days 2021 on the 13th of October, which are based on the following topics: Schatten A., Ullrich J., & Mallinger K.: Risk governance of hyper-connected systems and implications for the technological management of resilient… Read More
After a long pause with just-online-events it was a pleasure to once again organize the (ISC)2 / ISACA Conference on October 5, 2021 as a live event. Hosted in TU Wien´s wonderful TUtheSky Conference Room with a great view over Vienna we had 100 participants, 10 very interesting talks, a… Read More
At the //heise devSec conference on October 6-7, 2021 Mathias Tausig gave an online-workshop about “Hands-On Threat Modeling” for 18 participants and a talk (online) to 60 participants concerning the topic: “Reifegradbewertung für TechnikerInnen oder wie ich lernte OWASP SAMM zu lieben”. heise devSec is a conference with… Read More
Together with sipgate and ISMK Stralsund, Gabriel Gegenhuber, researcher at SBA Research and University of Vienna, and Michael Pucher, researcher at SBA research, discovered and investigated a vulnerability in the Voice of LTE (VoLTE) stack that is broadly used within MediaTek-based smartphones. ∞
In the Mediatek modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. ∞