Publications

An Experimentally Verified Attack on Full Grain-128 Using Dedicated Reconfigurable Hardware

2011 - Itai Dinur, Tim Güneysu, Chris­tof Paar, Adi Shamir, Ralf Zimmermann

AsiaCrypt 2011, Seoul, Korea [ASIACRYPT 2011] [pdf] [bib]

MicroECC: A Lightweight Reconfigurable Elliptic Curve Crypto-Processor

2011 - Michal Varchola, Tim Güneysu, Oliver Mischke

International Conference on ReConFigurable Computing and FPGAs, ReConFig 2011, Cancun, Mexico, November 30-December 2, 2011, to appear.

Security of Wireless Embedded Devices in the Real World

2011 - Timo Kasper, David Oswald, Chris­tof Paar

Information Security Solutions (ISSE) 2011 - Securing Electronic Business Processes (November 22-23 2011, Prague, Czech Republic) [pdf] [bib]

Decrypting HDCP-Protected Video Streams using Reconfigurable Hardware

2011 - Benno Lomb, Tim Güneysu

In­ter­na­tio­nal Con­fe­rence on Re­Con­Fi­gura­ble Com­pu­ting and FPGAs, Re­Con­Fig 2011, Can­cun, Me­xi­co, No­vem­ber 30-De­cem­ber 2, 2011, to ap­pe­ar.

Wireless security threats: Eavesdropping and detecting of active RFIDs and remote controls in the wild

2011 - Timo Kasper, David Oswald, Chris­tof Paar

19th International Conference on Software, Telecommunications and Computer Networks (SoftCOM) [pdf] [bib]

Understanding Fraudulent Activities in Online Ad Exchanges

2011 - Brett Stone-Gross, Ryan Stevens, Apostolis Zarras, Richard Kemmerer, Christopher Kruegel, Giovanni Vigna

Internet Measurement Conference (IMC), Berlin, Germany, November 2011 [PDF]

Praktische Angriffe auf die Bitstromverschlüsselung von Xilinx FPGAs

2011 - Markus Kasper, Timo Kasper, Amir Moradi, Chris­tof Paar

Datenschutz und Datensicherheit - DuD - Ausgabe 11/2011 - http://www.dud.de/Ausgabe/2011-11.html [Dud Webseite] [pdf]

Seitenkanalanalyse kontaktloser SmartCards

2011 - Timo Kasper, David Oswald, Chris­tof Paar

Datenschutz und Datensicherheit - DuD - Ausgabe 11/2011 - http://www.dud.de/Ausgabe/2011-11.html [DuD Webseite] [pdf]

Crouching Tiger - Hidden Payload: Security Risks of Scalable Vectors Graphics

2011 - Mario Heiderich, Tilman Frosch, Meiko Jensen, Thorsten Holz

18th ACM Conference on Computer and Communications Security (CCS), Chicago, IL, October 2011 [PDF]

On the Vulnerability of FPGA Bitstream Encryption against Power Analysis Attacks – Extracting Keys from Xilinx Virtex-II FPGAs

2011 - Amir Moradi, Alessandro Barenghi, Timo Kasper, Chris­tof Paar

18th ACM Conference on Computer and Communications Security, CCS 2011, Chicago, IL, USA, October 17-21, 2011, pages 111-124. [DOI] [pdf] [slides] [bib]

POSTER: Control-Flow Integrity for Smartphones.

2011 - Lucas Davi, Alexandra Dmitrienko, Manuel Egele, Thorsten Holz, Ralf Hund, Stefan Nürnberger, Ahmad-Reza Sadeghi, Thomas Fischer

18th ACM Conference on Computer and Communications Security (CCS'11) [Poster]

POSTER: The Quest for Security against Privilege Escalation Attacks on Android

2011 - Sven Bugiel, Lucas Davi, Alexandra Dmitrienko, Thomas Fischer, Ahmad-Reza Sadeghi, Bhargava Shastry

18th ACM Conference on Computer and Communications Security (CCS'11)

TrumanBox: Improving Dynamic Malware Analysis by Emulating the Internet

2011 - Christian Gorecki, Felix C. Freiling, Marc Kührer, Thorsten Holz

13th International Symposium on Stabilization, Safety, and Security of Distributed Systems (SSS), Grenoble, France, October 2011 [PDF]

Breaking Mifare DESFire MF3ICD40: Power Analysis and Templates in the Real World

2011 - David Oswald, Chris­tof Paar

Work­shop on Cryp­to­gra­phic Hard­ware and Em­bed­ded Sys­tems, CHES 2011, Nara, Japan, Sep­tem­ber 28-Oc­to­ber 1, 2011, pages 207-222 [pdf] [extended version]

Generic Side-Channel Countermeasures for Reconfigurable Devices

2011 - Tim Güneysu, Amir Moradi

Work­shop on Cryp­to­gra­phic Hard­ware and Em­bed­ded Sys­tems, CHES 2011, Nara, Japan, Sep­tem­ber 28-Oc­to­ber 1, 2011, pages 33-48. [pdf] [PROMs]

The Bug that made me President: A Browser- and Web-Security Case Study on Helios Voting

2011 - Mario Heiderich, Tilman Frosch, Marcus Niemietz, Jörg Schwenk

International Conference on E-voting and Identity (VoteID), 2011, Tallinn, Estonia, September 2011 [Website]

On the Power of Fault Sensitivity Analysis and Collision Side-Channel Attacks in a Combined Setting

2011 - Amir Moradi, Oliver Mischke, Chris­tof Paar, Yang Li, Kazuo Ohta, Kazuo Sakiyama

Work­shop on Cryp­to­gra­phic Hard­ware and Em­bed­ded Sys­tems, CHES 2011, Nara, Japan, September 28-October 1, 2011, pages 292-311. [pdf]

Automated Identification of Cryptographic Primitives in Binary Programs

2011 - Felix Gröbert, Carsten Willems, Thorsten Holz

14th International Symposium on Recent Advances in Intrusion Detection (RAID), Menlo Park, CA, September 2011 [PDF]

IceShield: Detection and Mitigation of Malicious Websites with a Frozen DOM

2011 - Mario Heiderich, Tilman Frosch, Thorsten Holz

14th International Symposium on Recent Advances in Intrusion Detection (RAID), Menlo Park, CA, September 2011 [PDF]

On the E ffectiveness of XML Schema Validation for Countering XML Signature Wrapping Attacks

2011 - Meiko Jensen, Christopher Meyer, Juraj Somorovsky, Jörg Schwenk

In IWSSC 2011: First International Workshop on Securing Services on the Cloud, Sept. 2011 [pdf]

Short Signatures from Weaker Assumptions

2011 - Dennis Hofheinz, Tibor Jager, Eike Kiltz

Asiacrypt 2011 [Full Version]

All Your Clouds are Belong to us – Security Analysis of Cloud Management Interfaces

2011 - Juraj Somorovsky, Mario Heiderich, Meiko Jensen, Jörg Schwenk, Nils Gruschka, Luigi Lo Iacono

In Proceedings of the ACM Cloud Computing Security Workshop (CCSW), 2011. [pdf]

The Power of Recognition: Secure Single Sign-On using TLS Channel Bindings

2011 - Jörg Schwenk, Florian Kohlar, Marcus Amon

In Proceedings of the Seventh ACM Workshop on Digital Identity Management (DIM) (October 21, 2011, Chicago, IL, USA. Collocated with ACM CCS 2011) Copyright 2011 ACM 978-1-4503-1006-2/11/10…$10.00. [Paper]

BotMagnifier: Locating Spambots on the Internet

2011 - Gianluca Stringhini, Thorsten Holz, Brett Stone-Gross, Christopher Kruegel, Giovanni Vigna

USENIX Security Symposium, San Francisco, CA, August 2011 [PDF]

Jackstraws: Picking Command and Control Connections from Bot Traffic

2011 - Gregoire Jacob, Ralf Hund, Christopher Kruegel, Thorsten Holz

USENIX Security Symposium, San Francisco, CA, August 2011 [PDF]

Proceedings of 8th International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment (DIMVA)

2011 - Thorsten Holz, Herbert Bos

8th Conference on Detection of Intrusions and Malware, and Vulnerability Assessment (DIMVA), Amsterdam, Netherlands, July 2011 [SpringerLink]

Sec2 – Ein mobiles Nutzer-kontrolliertes Sicherheitskonzept für Cloud-Storage

2011 - Christopher Meyer, Juraj Somorovsky, Jörg Schwenk, Benedikt Driessen, Thang Tran, Christian Wietfeld

In Proceedings of the DACH Security 2011, Oldenburg, Germany [pdf]

Masked Dual-Rail Precharge Logic Encounters State-of-the-Art Power Analysis Methods

2011 - Amir Moradi, Mario Kirschbaum, Thomas Eisenbarth, Chris­tof Paar

IEEE Transactions on Very Large Scale Integration Systems, Volume 20 , Issue 9, Pages 1578 - 1589, 2012. [DOI] [pdf]

Side-Channel Analysis of Cryptographic RFIDs with Analog Demodulation

2011 - Timo Kasper, David Oswald, Chris­tof Paar

7th Workshop on RFID Security and Privacy 2011, RFIDSec 2011, Amherst, USA, June 26–28, 2011 [pdf]

Uni-directional Trusted Path: Transaction Confirmation on Just One Device

2011 - Atanas Filyanov, Jonathan M. McCune, Ahmad-Reza Sadeghi, Marcel Winandy

IEEE/IFIP 41st International Conference on Dependable Systems & Networks (DSN 2011), pp. 1-12. IEEE Computer Society, 2011. [pdf]

7th Workshop on RFID Security and Privacy (RFIDsec)

2011 - A. Juels, K. Fu, Chris­tof Paar

Lecture Notes in Computer Science 7055, Springer, Amherst, MA, USA, June 26-27, 2011.

Automatic Analysis of Malware Behavior using Machine Learning

2011 - Konrad Rieck, Philipp Trinius, Carsten Willems, Thorsten Holz

Journal of Computer Security, Vol. 19, No. 4, pages 639-668, 2011 [JCS]

Lightweight Remote Attestation Using Physical Functions

2011 - Ahmad-Reza Sadeghi, Christian Wachsmann, Steffen Schulz

Accepted for 4th ACM Conference on Wireless Network Security (WiSec'11)

Practical Evaluation of DPA Countermeasures on Reconfigurable Hardware

2011 - Amir Moradi, Oliver Mischke, Chris­tof Paar

IEEE In­ter­na­tio­nal Sym­po­si­um on Hard­ware-Ori­en­ted Se­cu­ri­ty and Trust (HOST 2011), San Diego, California, USA, June 5-6, 2011, pages 154-160. [pdf]

Using Memory Management to Detect and Extract Illegitimate Code for Malware Analysis

2011 - Carsten Willems, Felix Freiling

Technical Report TR-2011-002, University of Mannheim, Department of Computer Science, May 2011 [MADOC Link]

MARV - Data Level Confidentiality Protection in BPEL-based Web Service Compositions

2011 - Majernik, Filip, Meiko Jensen, Jörg Schwenk

In Proceedings of the 6th International Conference on Network Architectures and Information Systems Security (SAR-SSI), La Rochelle, France.

Mobile Security Catching Up? Revealing the Nuts and Bolts of the Security of Mobile Devices

2011 - Michael Becher , Felix C. Freiling, Johannes Hoffmann, Thorsten Holz, Sebastian Uellenbeck, Christopher Wolf

IEEE Symposium on Security and Privacy ("Oakland"), Berkeley, CA, May 2011 [PDF]

Security Prospects through Cloud Computing by Adopting Multiple Clouds

2011 - Bohli, Jens-Matthias, Meiko Jensen, Gruschka, Nils, Lo Iacono, Luigi, Jörg Schwenk

In Proceedings of the 4th IEEE International Conference on Cloud Computing (CLOUD), Washington, D.C., USA.

Pushing the Limits: A Very Compact and a Threshold Implementation of AES

2011 - Amir Moradi, Dipl.-Kfm. Axel Poschmann, San Ling, Chris­tof Paar, Huaxiong Wang

Advances in Cryptology - EUROCRYPT 2011 - 30th Annual International Conference on the Theory and Applications of Cryptographic Techniques, Tallinn, Estonia, May 15-19, 2011, vo­lu­me 6632 of LNCS, pages 69-88, Sprin­ger. [DOI] [bib] [pdf]

Internals of Windows Memory Management (not only) for Malware Analysis

2011 - Carsten Willems

Technical Report TR-2011-001, University of Mannheim, Department of Computer Science, April 2011 [MADOC Link]

Securing the Access to Electronic Health Records on Mobile Phones

2011 - Alexandra Dmitrienko, Zecir Hadzic, Hans Löhr, Ahmad-Reza Sadeghi, Marcel Winandy

Biomedical Engineering Systems and Technologies 2011 - Revised Selected Papers, Springer-Verlag, 2011. [PDF]

MediTrust: Secure Client Systems for Healthcare IT to Protect Sensitive Data of Patients

2011 - Ammar Alkassar, Biljana Cubaleska, Hans Löhr, Ahmad-Reza Sadeghi, Christian Stüble, Marcel Winandy

Med-e-Tel - Global Telemedicine and eHealth Updates: Knowledge Resources, Vol 4., pp. 385-389, ISfTeH, Luxembourg, 2011. [PDF]

Das Internet-Malware-Analyse-System (InMAS)

2011 - Markus Engelberth, Felix C. Freiling, Jan Goebel, Christian Gorecki, Thorsten Holz, Ralf Hund, Philipp Trinius, Carsten Willems

Datenschutz und Datensicherheit (DuD), Volume 35, Number 4, pp. 247-252 [SpringerLink]

XManDroid: A New Android Evolution to Mitigate Privilege Escalation Attacks.

2011 - Sven Bugiel, Lucas Davi, Alexandra Dmitrienko, Thomas Fischer, Ahmad-Reza Sadeghi

Technical Report: TUD-CS-2011-0127 [PDF]

The Underground Economy of Spam: A Botmaster's Perspective of Coordinating Large-Scale Spam Campaigns

2011 - Brett Stone-Gross, Thorsten Holz, Gianluca Stringhini, Giovanni Vigna

USE­NIX Work­shop on Lar­ge-Sca­le Ex­ploits and Emer­gent Thre­ats (LEET), Boston, MA, March 2011 [PDF]

ROPdefender: A Detection Tool to Defend Against Return-Oriented Programming Attacks

2011 - Lucas Davi, Ahmad-Reza Sadeghi, Marcel Winandy

6th ACM Symposium on Information, Computer and Communications Security (ASIACCS 2011), ACM, 2011.

The future of high-speed cryptography: new computing platforms and new ciphers

2011 - Tim Güneysu, Stefan Heyse, Chris­tof Paar

Proceedings of the 21st edition of the great lakes symposium on Great lakes symposium on VLSI (GLSVLSI '11). ACM, New York, NY, USA, 461-466. DOI=10.1145/1973009.1973112 http://doi.acm.org/10.1145/1973009.1973112 [pdf]

Twin Clouds: An Architecture for Secure Cloud Computing (Extended Abstract)

2011 - Sven Bugiel, Stefan Nürnberger, Ahmad-Reza Sadeghi, Thomas Schneider

Workshop on Cryptography and Security in Clouds (CSC'11)

Secure Set Intersection with Untrusted Hardware Tokens

2011 - Marc Fischlin, Benny Pinkas, Ahmad-Reza Sadeghi, Thomas Schneider, Ivan Visconti

11th Cryptographers' Track at the RSA Conference (CT-RSA'11) [pdf]

A Formalization of the Security Features of Physical Functions

2011 - Ahmad-Reza Sadeghi, Frederik Armknecht, Christian Wachsmann, Roel Maed, Francois-Xavier Standaert

Accepted for 32nd IEEE Symposium on Security and Privacy (IEEE S&P 2011), IEEE Computer Society, 2011.

A Security Architecture for Accessing Health Records on Mobile Phones.

2011 - Alexandra Dmitrienko, Zecir Hadzic, Hans Löhr, Ahmad-Reza Sadeghi, Marcel Winandy

Proceedings of the 4th International Conference on Health Informatics (HEALTHINF 2011), pp. 87-96, SciTePress, 2011. [PDF] [Bibtex]

Privacy-Preserving ECG Classification with Branching Programs and Neural Networks

2011 - Barni, Mauro, Failla, Pierluigi, Lazzeretti, Riccardo, Ahmad-Reza Sadeghi, Thomas Schneider

Accepted for IEEE Transactions on Information Forensics and Security (TIFS).
Page: