SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
SBA supports the organization of the Mozilla Security Research Summit on November 8, 2019. The event will be hosted as part of Mozilla’s Security Engineering University Relationship Framework (SURF) initiative. In addition to Mozilla engineers discussing current research problems, the day will also include some high-caliber talks from security… Read More
Martina Lindorfer has been awarded the Hedy Lamarr price for her research in the field of automatic malware detection. As a professor at TU Wien she hopes to inspire girls to pursue a career in the field of IT Security. The city of Vienna awards women in the area of… Read More
Rudolf Mayer is representing the EU H2020 project FeatureCloud and SBA Research at the Security Research Event 2019 in Helsinki, Finland, co-organized by the European Commission and the Ministry of the Interior in Finland as a side event of Finland’s Presidency of the Council of the European Union (https://www.sre2019.eu). Read More
New Technologies, new companies and new challenges in the digital world. At the DiDays SBA Research highlights the importance of a holistic security approach and the imminent role of security in a world of digitalization. Explaining interested children and visitors the role of IT, logical thinking and the necessity of… Read More
Edgar Weippl was invited as a guest at the Barbara Karlich Show, talking about security & privacy! https://buff.ly/2orx8H9 (Talk Edgar Weippl ~30 minutes)… Read More
Andreas Boll and Tobias Fink (WE_OWN_YOU) secured the third place (local) and 15th place (overall) at the hack.lu.CTF. Many thanks to the CTF team and most importantly the CTF LVA students from TU Wien. Hack.lu is an open convention/conference where people can discuss about computer security, privacy, information technology… Read More
Research Data Alliance 14th Plenary in Finland brings together data experts in research, industry and policy-making from all around the world and from all disciplines under the theme Data Makes the Difference. Tomasz Miksa chaired a session of the DMP Common Standards working group. He… Read More
Stefan Jakoubi gives a talk at the annual IT-LAW.AT symposium on November 28, 2019. This year´s event will circle around trade secrets vs. transparency, security, espionage and GDPR. Read more
The all-in-one-seo-pack plugin before 3.2.7 for WordPress (aka All in One SEO Pack) is susceptible to Stored XSS due to improper encoding of the SEO-specific description for posts provided by the plugin via unsafe placeholder replacement. We recommend to update the all-in-one-seo-pack plugin to version 3.2.7 or later. For further details, see the full security advisory. Read More
The broken-link-checker plugin through 1.11.8 for WordPress (aka Broken Link Checker) is susceptible to Reflected XSS due to improper encoding and insertion of an HTTP GET parameter into HTML. The filter function on the page listing all detected broken links can be exploited by providing an XSS payload in the s_filter GET parameter in a filter_id=search request. NOTE: this is an end-of-life product. Read More
The research on Combinatorial Security Testing (CST) by the MATRIS group of SBA Research is amongst the top five nominations for the Houska prize, Austria's largest private award for application-oriented research, in the category non-university research. ... ∞