SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
phpWhois and some of its forks in versions before 5.1.0 are prone to a code injection vulnerability due to insufficient sanitization of returned WHOIS data. This allows attackers controlling the WHOIS information of a requested domain to execute arbitrary PHP code in the context of the application. We recommend to update phpWhois to version jsmitty12: 5.1.0 or later. For further details, see the full security advisory. Read More
The aim of this special issue is to gather latest research results concerning blockchain technology and its application on relevant scenarios, such as the ones previously listed. Researchers, experts, and scholars from both industry and academia are encouraged to present their recent achievements and research directions in this area Manuscript… Read More
Dimitris Simos was invited to join the editorial board of the Mathematics in Computer Science (MCS) journal published and distributed by Springer. MCS publishes high-quality original research papers on the development of theories and methods for computer and information sciences, the design, implementation, and analysis of algorithms and… Read More
Für ein Kooperationsprojekt mit unserem Unternehmenspartner Stiwa suchen wir SoftwareentwicklerInnen mit Schwerpunkt .Net-Programmierung, welche im Bereich Automation arbeiten möchten. Nach Vereinbarung besteht die Möglichkeit die ausgeschriebenen Aufgaben im Rahmen von Forschungskooperationen (Masterarbeit oder Dissertation) mit SBA Research gGmbH oder der TU Wien zu übernehmen. Bewerbungen bitte an eweippl@sba-research.org und… Read More
Ercim news is seeking short articles (700-800 words) on the current topic for its special theme “Digital Twins”. This is related to our ongoing research activities in the Christian Doppler Laboratory SQI (Links zu www.sqi.at) Submission Deadline Thursday, 28 August https://ercim-news.ercim.eu/call Guest editors: Benjamin Sanderse (CWI)… Read More
Alexei Zaymatin presented “A Wild Velvet Fork Appears!” at the 2018 Building on Bitcoin conference in Lisbon. Building on Bitcoin, Lisbon 2018 Click here to watch the full presentation… Read More
Alexei Zamyatin gets paper “Committing to quantum resistance: a slow defence for Bitcoin against a fast quantum computing attack” published by the Royal Society. Full paper He also gives a talk on velvet forks at the Building on Bitcoin conference next week. More information… Read More
Two very insightful days on Crypto-Currencies, law enforcement and illegal markets. Edgar Weippl participated as member of the Europol’s EC3 Academic Advisor Network. Read More
A great article by Ruth Hutsteiner highlights our current research that we jointly perform with the CDL-SQI. An interview with Edgar Weippl will be broadcast in today’s ‘Wissen aktuell‘ in Ö1
Together with sipgate and ISMK Stralsund, Gabriel Gegenhuber, researcher at SBA Research and University of Vienna, and Michael Pucher, researcher at SBA research, discovered and investigated a vulnerability in the Voice of LTE (VoLTE) stack that is broadly used within MediaTek-based smartphones. ∞
In the Mediatek modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. ∞