SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
Our colleague Caroline König, researcher at SBA Research and research assistant at the CD-Lab AsTra took part in the CDG-Science-Slam and presented her research on software protection. Within just a few minutes, she gave attendees an entertaining and accessible look at the challenges of shielding software from analysis and tampering, a topic that has become increasingly critical in today's security landscape. Read More
Today, 170 participants attended the Software Security 101: Secure Coding Basics Session at sec4dev Conference & Bootcamp! Thomas Konrad (SBA Research) held the 3-hour training on the basics of secure coding giving a good overview… Read More
The 21th International Conference on Availability, Reliability, and Security (ARES 2026) took center stage in Linköping, Sweden, from August 24 - 27, 2026, offering a platform for experts and enthusiasts to explore the latest developments in the field. The conference was jointly organised by Linköpings universitet (LiU) and SBA Research. ∞
New paper “Send and Pretend: Exploiting Transcript Consistency Issues in End-to-End Encrypted Group Chats”, was recently accepted for the 35th USENIX Security Symposium. The paper is a collaboration between SBA, the University of Vienna, and the Interdisciplinary Transformation University Austria (IT:U). It was authored by Gabriel K. Gegenhuber, Moritz Grefner, Maximilian Günther, Matthäus Wininger, David Schmidt, and Aljosha Judmayer. ∞
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the assets (CVE-2026-16969), custom attributes (CVE-2026-18360) and datastore upload (CVE-2026-18361) functions. ∞