Publications

Towards Next-Generation Botnets

2008 - Ralf Hund, Matthias Hamann, Thorsten Holz

European Conference on Computer Network Defense (EC2ND), Dublin, Ireland, December 2008 [PDF]

A Brow­ser-Ba­sed Ker­be­ros Au­then­ti­ca­ti­on Sche­me

2008 - Sebastian Gajek, Tibor Jager, Mark Manulis, Jörg Schwenk

ESORICS 2008

On the equivalence of generic group models

2008 - Tibor Jager, Jörg Schwenk

ProvSec 2008

Sufficient Conditions for Intractability over Black-Box Groups: Generic Lower Bounds for Generalized DL and DH Problems

2008 - Andy Rupp, G. Leander, E. Bangerter, A. Dent, Ahmad-Reza Sadeghi

In 14th International Conference on the Theory and Application of Cryptology and Information Security —- ASIACRYPT 2008 (to appear). Melbourne, Australia, Dezember 7-11, 2008.

Generalized Universal Circuits for Secure Evaluation of Private Functions with Application to Data Classification.

2008 - Ahmad-Reza Sadeghi, Thomas Schneider,

11th International Conference on Information Security and Cryptology (ICISC'08), December 3-5, Seoul, South Korea. [pdf]

Flexible and Secure Enterprise Rights Management Based on Trusted Virtual Domains

2008 - Ahmad-Reza Sadeghi, Marcel Winandy, Christian Stüble, Rani Husseiki, Yacine Gasmi, Patrick Stewin, Martin Unger

STC '08: Proceedings of the 3rd ACM Workshop on Scalable Trusted Computing, p. 71-80, ACM, 2008. [pdf]

User Privacy in Transport Systems Based on RFID E-Tickets

2008 - Ahmad-Reza Sadeghi, Ivan Visconti, Christian Wachsmann

In Proceedings of the 1st International Workshop on Privacy in Location-Based Applications (PiLBA), Malaga, Spain, October 9, 2008. [pdf]

As the Net Churns: Fast-Flux Botnet Observations

2008 - Jose Nazario, Thorsten Holz

International Conference on Malicious and Unwanted Software, October 2008 [pdf]

Reconstructing Peoples Lives: A Case Study in Teaching Forensic Computing

2008 - Felix Freiling, Thorsten Holz, Martin Mink

In­ter­na­tio­nal Con­fe­rence on IT Se­cu­ri­ty In­ci­dent Ma­nage­ment & IT Fo­ren­sics (IMF), Mannheim, Ger­ma­ny, September 2008 [pdf]

Property-Based Attestation without a Trusted Third Party

2008 - Ahmad-Reza Sadeghi, Hans Löhr, Liqun Chen, Mark Manulis,

Information Security Conference (ISC'08), 2008. [pdf]

Property-Based TPM Virtualization

2008 - Ahmad-Reza Sadeghi, Christian Stüble, Marcel Winandy

Information Security, 11th International Conference, ISC 2008, LNCS 5222, p. 1-16, Springer, 2008. [pdf] [bibtex]

Enhancing COPACOBANA for Advanced Applications in Cryptography and Cryptanalysis

2008 - Tim Güneysu, Chris­tof Paar, Gerd Pfeiffer, Manfred Schimmler

International Conference on Field Programmable Logic and Applications - FPL 2008, Heidelberg, Germany, September 8 - 10, 2008. [pdf]

Fast Hash-Based Signatures on Constrained Devices

2008 - Sebastian Rohde, Thomas Eisenbarth, Erik Dahmen, Johannes Buchmann, Chris­tof Paar

Proceedings of the 8th Smart Card Research and Advanced Application IFIP Conference -- CARDIS 2008. September 8-11, 2008. [DOI] [pdf] [bib]

Ultra-Lightweight Implementations for Smart Devices - Security for 1000 Gate Equivalents

2008 - Carsten Rolfes, Dipl.-Kfm. Axel Poschmann, Gregor Leander, Chris­tof Paar

Proceedings of the 8th Smart Card Research and Advanced Application IFIP Conference -- CARDIS 2008. September 8-11, 2008. [Implementations] [pdf] [bib]

On the Power of Power Analysis in the Real World: A Complete Break of the KeeLoq Code Hopping Scheme

2008 - Thomas Eisenbarth, Timo Kasper, Amir Moradi, Chris­tof Paar, Mahmoud Salmasizadeh, Mohammad T. Manzuri Shalmani

28th International Cryptology Conference -- CRYPTO 2008. Santa Barbara, California, USA. August 17-21, 2008. [DOI] [pdf] [bib] [Slides]

Exploiting the Power of GPUs for Asymmetric Cryptography

2008 - Robert Szerwinski, Tim Güneysu

10. International Workshop on Cryptographic Hardware and Embedded Systems - CHES 2008, Washington, USA. August 10 - 13, 2008. [pdf]

Hash Functions and RFID Tags: Mind the Gap

2008 - Andrey Bogdanov, Gregor Leander, Chris­tof Paar, Dipl.-Kfm. Axel Poschmann, Matthew Robshaw, Yannick Seurin

10. International Workshop on Cryptographic Hardware and Embedded Systems - CHES 2008, Washington, USA. August 10 - 13, 2008. [DOI] [pdf] [bib]

Time-Area Optimized Public-Key Engines: MQ-Cryptosystems as Replacement for Elliptic Curves?

2008 - Andrey Bogdanov, Thomas Eisenbarth, Andy Rupp, Christopher Wolf

Workshop on Cryptographic Hardware and Embedded Systems -- CHES 2008 (Best Paper Award). Washington DC, USA, August 10-13, 2008. [DOI] [pdf] [bib]

Ultra High Performance ECC over NIST Primes on Commercial FPGAs

2008 - Tim Güneysu, Chris­tof Paar

10. International Workshop on Cryptographic Hardware and Embedded Systems - CHES 2008, Washington, USA. August 10 - 13, 2008. [pdf]

Learning and Classification of Malware Behavior

2008 - Konrad Rieck, Thorsten Holz, Carsten Willems, Patrick Düssel, Pavel Laskov

Conference on Detection of Intrusions and Malware & Vulnerability Assessment (DIMVA), Paris, France, July 2008 [PDF]

Fast Multivariate Signature Generation in Hardware: The Case of Rainbow

2008 - S. Balasubramanian, Andrey Bogdanov, Andy Rupp, J. Ding, H. W. Carter, Chris­tof Paar

In 19th IEEE International Conference on Application-specific Systems, Architectures and Processors — ASAP 2008, Leuven, Belgium, Juli 2-4, 2008.

Studying Malicious Websites and the Underground Economy on the Chinese Web

2008 - Jianwei Zhuge, Thorsten Holz, Chengyu Song, Jinpeng Guo, Xinhui Han, Wei Zou

Work­shop on the Eco­no­mics of In­for­ma­ti­on Se­cu­ri­ty (WEIS), Hanover, NH, USA, June 2008 [pdf]

Efficient implementation of eSTREAM ciphers on 8-bit AVR microcontrollers

2008 - Gordon Meiser, Thomas Eisenbarth, Kerstin Lemke-Rust, Chris­tof Paar

3rd International Symposium on Industrial Embedded Systems -- SIES 2008. Montpellier - Le Grande Motte, France. Juni 11-13, 2008. [DOI] [pdf] [bib]

Secure Multi-Coupons for Federated Environments: Privacy-Preserving and Customer-Friendly

2008 - Ahmad-Reza Sadeghi, Frederik Armknecht, Hans Löhr, Mark Manulis, Alberto Escalante

Accepted for The 4th Information Security Practice and Experience Conference (ISPEC 2008), 21-23 April 2008, Sydney, Australia. [Springer Link] [pdf]

Securing Peer-to-Peer Distributions for Mobile Devices

2008 - Ahmad-Reza Sadeghi, Christian Stüble, André Osterhues, Marko Wolf, N. Asokan

Accepted for The 4th Information Security Practice and Experience Conference (ISPEC 2008), 21-23 April 2008, Sidney, Australia.

Measurements and Mitigation of Peer-to-Peer-based Botnets: A Case Study on Storm Worm

2008 - Thorsten Holz, Moritz Steiner, Frederic Dahl, Ernst Biersack, Felix C. Freiling

USENIX Workshop on Large-Scale Exploits and Emergent Threats (LEET), San Francisco, CA, April 2008 [pdf]

DSPs, BRAMs and a Pinch of Logic: New recipes for AES on FPGAs

2008 - Saar Drimer, Tim Güneysu, Chris­tof Paar

16th Annual IEEE Symposium on Field-Programmable Custom Computing Machines - FCCM 2008, Stanford University, California, April 13-15, 2008. [pdf]

Security Requirements Engineering in the Automotive Domain: On Specification Procedures and Implementational Aspects

2008 - Chris­tof Paar, Marko Wolf

SICHERHEIT 2008: Sicherheit — Schutz und Zuverlässigkeit, 4. Jahrestagung des Fachbereichs Sicherheit der Gesellschaft für Informatik e.V., Saarbrücken, Germany. Proceedings, LNI, April 2 - 4, 2008.

Monkey-Spider: Detecting Malicious Websites with Low-Interaction Honeyclients

2008 - Ali Ikinci, Thorsten Holz, Felix Freiling

GI Si­cher­heit - Schutz und Zu­ver­läs­sig­keit, Jah­res­ta­gung des Fach­be­reichs Si­cher­heit der Ge­sell­schaft für In­for­ma­tik, Saarbrücken, April 2008 - **Best Paper Award** [pdf]

Comparison of Innovative Signature Algorithms for WSNs

2008 - Benedikt Driessen, Dipl.-Kfm. Axel Poschmann, Chris­tof Paar

First ACM Conference on Wireless Network Security, WiSec 2008, Alexandria, Virginia, USA. Proceedings, ACM Press. 31.03 - 02.04 2008. [pdf] [Talk Slides] [Bibtex]

Security for 1000 Gate Equivalents

2008 - Carsten Rolfes, Dipl.-Kfm. Axel Poschmann, Chris­tof Paar

Secure Component and System Identification, SECSI 2008, Berlin, Germany. März, 17-18 2008. [Talk Slides] [Bibtex] [pdf]

Rishi: Identifizierung von Bots durch Auswerten der IRC Nicknamen

2008 - Jan Göbel, Thorsten Holz

DFN-CERT Work­shop "Si­cher­heit in ver­netz­ten Sys­te­men", Ham­burg, February 2008 [pdf]

Measuring and Detecting Fast-Flux Service Networks

2008 - Thorsten Holz, Christian Gorecki, Konrad Rieck, Felix Freiling

Network and Distributed System Security Symposium (NDSS), San Diego, CA, February 2008 [pdf]

Breaking Legacy Banking Standards with Special-Purpose Hardware

2008 - Tim Güneysu, Chris­tof Paar

Conference on Financial Cryptography and Data Security, FC 2008, Cozumel, Mexiko. LNCS Proceedings, Januar, 28-31 2008. [pdf]

Resettable and Non-Transferable Chip Authentication for E-Passports

2008 - Ahmad-Reza Sadeghi, Carlo Blundo, Giuseppe Persiano, Ivan Visconti

To be presented at RFIDSec 2008. [pdf]

A Demonstrative Ad-hoc Attestation System

2008 - Ahmad-Reza Sadeghi, Endre Bangerter, Maksim Djackov

Information Security Conference 2008 (ISC'08), 2008.

A Forensic Framework for Tracing Phishers

2008 - Ahmad-Reza Sadeghi, Sebastian Gajek, Felix Gröbert, , Dominik Birk

International Federation for Information Processing, to appear in LNCS 6102. [pdf]

A novel solution for end-to-end integrity protection in signed PGP mail

2008 - Jörg Schwenk, Lijun Liao,

ICICS 2008, Birmingham, UK

An Efficient Implementation of Trusted Channels Based on OpenSSL

2008 - Ahmad-Reza Sadeghi, Frederik Armknecht, Yacine Gasmi, Gianluca Ramunno, Davide Vernizzi, Patrick Stewin, Martin Unger

Accepted for ACMSTC 2008.

Code Voting with Linkable Group Signatures

2008 - Jörg Schwenk, Sven Schäge, Jörg Helbach

3rd International Conference, Co-organized by Council of Europe, Gesellschaft für Informatik and E-Voting.CC, August 6th-9th, 2008 in Castle Hofen, Bregenz, Austria 2008. In LNI, 2008. [LNI Link]

Efficient Helper Data Key Extractor on FPGAs

2008 - Ahmad-Reza Sadeghi, Jamshid Shokrollahi, Christoph Bösch, Jorge Guajardo, Pim Tuyls

Accepted for CHES 2008. [pdf]

Identification Protocols Revisited - Episode I: E-Passports

2008 - Ahmad-Reza Sadeghi, Carlo Blundo, Giuseppe Persiano, Ivan Visconti

Presented at e-crypt workshop on Secure Component and System Identification (SECSI), 2008.

Improved Security Notions and Protocols for Non-Transferable Identification

2008 - Ahmad-Reza Sadeghi, Carlo Blundo, Giuseppe Persiano, Ivan Visconti

To appear in ESORICS 2008.

Modeling and Transformation of Security Requirements: An Approach for Service-oriented Architectures

2008 - Jörg Schwenk, Meiko Jensen, Ralph Herkenhöner, Sven Feja, Hermann de Meer, Andreas Speck

Proceedings of the First Euro-NF Workshop on Future Internet Architecture: New Trends in Service & Networking Architectures, 21. November 2008, Paris, France

Nutzung von selbstsignierten Client-Zertifikaten zur Authentifikation bei SSL/TLS

2008 - Tibor Jager, Heiko Jäkel, Jörg Schwenk

Sicherheit 2008.

Provably Secure Browser-Based User-Aware Mutual Authentication over TLS

2008 - Jörg Schwenk, Ahmad-Reza Sadeghi, Sebastian Gajek, Mark Manulis,

Accepted for ASIACCS'08. [ACM Link]

Stronger TLS Bindings for SAML Assertions and SAML Artifacts

2008 - Jörg Schwenk, Sebastian Gajek, Lijun Liao,

In Proceedings of the ACM CCS Workshop for Secure Web Services (ACM SWS'08), Virginia (USA), 2008.

Sufficient Conditions for Intractability in the Generic Model: Providing Lower Bounds for Generalized DL and DH Problems

2008 - Ahmad-Reza Sadeghi, Nils-Gregor Leander, Andy Rupp, Endre Bangerter, Alexander W. Dent

Accepted for ASIACRYPT 2008.

TLS Federation - a Secure and Relying-Party-Friendly Approach for Federated Identity Management

2008 - Jörg Schwenk,

This paper describes a novel approach that integrates Federated IDM and SSL.

Trusted Computing—State of the Art and Challenges

2008 - Ahmad-Reza Sadeghi,

Invited Talk at SOFSEM 2008, LNCS 4910, 2008
Page: