SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
At the end of June, forty-seven female HTL students from across Austria participated in the two-day Code. Protect. Empower. – Cyber Security for Female Students workshop, gaining practical, hands-on experience in cybersecurity while exploring education and career opportunities in the field. Read More
SBA Research was pleased to host the first workshop of the year in collaboration with the Austrian Cyber Security Challenge (ACSC). The session took place in a hybrid format, welcoming participants both on-site in Vienna and online via Discord. Read More
Our colleague Andreas Ekelhart, key researcher and Applied Research Lead at SBA Research, published a new paper titled AgCyRAG: an Agentic Knowledge Graph based RAG Framework for Automated Security Analysis. Read More
In June, our colleague Bernhard Garn, senior researcher at SBA Research, participated in the 2nd IRDR Young Scientists Lumos, a global pre-event to the 2025 Global Platform for Disaster Risk Reduction (GPDRR). Co-hosted by the Integrated Research on Disaster Risk (IRDR) and the… Read More
The MATRIS Research Group of SBA Research attended the 14th International Workshop on Combinatorial Testing (IWCT 2025) in Naples, Italy, the premier venue for research on combinatorial testing. The topics presented include algorithms for the construction of discrete mathematical objects and repositories thereof, novel applications of combinatorial testing including AI… Read More
SBA Research, University of Vienna, St. Pölten University of Applied Sciences, Massachusetts Institute of Technology (MIT), and Joanneum Research held a joint workshop on new directions in attack/defense modeling using AI on April 12th,… Read More
🔍 Exploring Global Solutions:The PH-US-UNCTAD Harnessing STI for DRR Workshop convened in Manila, Philippines from February 29 to March 1, 2024. With delegates from 44 UNCSTD member states, Dr. Dimitris Simos,... Read More
On September 29th, Sebastian Schrittwieser was part of the First Workshop on Attacks and Software Protection (WASP) co-located with the ESORICS conference 2023 in Den Haag. He presented our research on modeling obfuscation stealth through code complexity in which we demonstrated how code complexity measures can be… Read More
New paper “Send and Pretend: Exploiting Transcript Consistency Issues in End-to-End Encrypted Group Chats”, was recently accepted for the 35th USENIX Security Symposium. The paper is a collaboration between SBA, the University of Vienna, and the Interdisciplinary Transformation University Austria (IT:U). It was authored by Gabriel K. Gegenhuber, Moritz Grefner, Maximilian Günther, Matthäus Wininger, David Schmidt, and Aljosha Judmayer. ∞
The IRIS web application in version 2.4.26 and possibly others is vulnerable to stored cross-site scripting (XSS) in the assets (CVE-2026-16969), custom attributes (CVE-2026-18360) and datastore upload (CVE-2026-18361) functions. ∞
We are proud to celebrate the outstanding achievements of our researchers, who were recognized at the University of Vienna Faculty of Computer Science's Best-of-the-Best Awards on June 24. ∞