SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
The bilateral KIRAS project SmartIdentification – Confident Identification by using Mobile Remote Devices – focused on the use of existing data on smartphones to analyse trends in human trafficking routes and to identify individuals, especially unaccompanied minors. Starting in 2017, in the aftermath of the European migrant crisis 2015/2016,… Read More
The ARES 2020 Conference, hosted by SBA Research, is currently taking place as all-digital conference. We are very happy to presenting a diverse program to more than 300 participants from over 43 countries, including: 27 full papers (acceptance rate: 21.26%) and 6 short papers 82 workshop… Read More
While taking a university course on security, Philipp Danzinger discovered two critical related vulnerabilities in KeePassRPC, an addon for the popular password manager KeePass. Both vulnerabilities allow a malicious web site to read and leak (unlocked) KeePass databases, while being very hard or impossible to detect, provided the KeePassRPC addon is… Read More
In the online attack / defense CTF competition ENOWARS4, We_0wn_Y0u got the 2nd place out of 154 teams! A big thanks to ENOFLAG and TU Berlin for hosting the event! Congratulations to all members of… Read More
SBA Research, the Vienna Competence Center for Information Security, will be funded for another four years within the framework of COMET – Competence Centers for Excellent Technologies Report of the FFG On 16 June 2020, the mid-term evaluation of SBA-K1, the COMET flagship research program of SBA Research, took… Read More
Security in the digital world is not only one of the main 2020 topics of the association fit4internet in cooperation with the Federal Ministry for Digitalization and Business Location (BMDW), but is also centrally dealt with in the new Digital Action Plan Austria. Respective future steps were presented by the… Read More
Since 1980, the IEEE Symposium on Security and Privacy has been the premier forum for presenting developments in computer security and electronic privacy, and for bringing together researchers and practitioners in the field. For the first time, the 2020 Symposium took part as a full virtual conference. Despite the challenges… Read More
As of March 13, 2020, Dimitris Simos holds a Guest Researcher appointment with US NIST and is affiliated with the Applied Computational Mathematics Division (ACMD) of the Information Technology Lab (ITL) [1]. In his capacity as an off-site collaborator, Dimitris will further strengthen the ties between SBA’s MATRIS group [2]… Read More
Congratulations to Johanna Ulrich! Another female scientist who supports SBA Research as a Key Researcher. Her research interests include network security and cloud security, and raising awareness for security and privacy in traditional engineering. She received a bachelor’s degree in Electrical Engineering and Information Technology and… Read More
Deputy director of the Stockholm Resilience Center, Victor Galaz, opened the session with a key note on the possible social-ecological benefits of AI. After the initial introduction of the topic by Alexander Schatten (Senior Consultant) and Kevin Mallinger (Business Development Manager), the interdisciplinary participants were encouraged to discuss technological approaches… Read More
Together with sipgate and ISMK Stralsund, Gabriel Gegenhuber, researcher at SBA Research and University of Vienna, and Michael Pucher, researcher at SBA research, discovered and investigated a vulnerability in the Voice of LTE (VoLTE) stack that is broadly used within MediaTek-based smartphones. ∞
In the Mediatek modem, there is a possible system crash due to a missing bounds check. This could lead to remote denial of service, if a UE has connected to a rogue base station controlled by the attacker, with no additional execution privileges needed. User interaction is not needed for exploitation. ∞