SBA Research is a research center for Information Security funded partly by the national initiative for COMET Competence Centers for Excellent Technologies.
Ping Identity Agentless Integration Kit before 1.5 is susceptible to Reflected Cross-site Scripting at the /as/authorization.oauth2 endpoint due to improper encoding of an arbitrarily submitted HTTP GET parameter name. We recommend to update Ping Identity Agentless Integration Kit to version 1.5 or later. For further details, see the full security advisory. Read More
Ludwig Kampel joined the International IFIP Cross Domain Conference for Machine Learning & Knowledge Extraction (CD-MAKE) 2019, a conference aiming to bridge and connect the domains of data fusion, preprocessing, mapping, knowledge representation as well as data protection, safety ans security amongst others. On the third day of the… Read More
The first International Summer School on Security & Privacy for Blockchains and Distributed Ledger Technologies started with the official opening remarks from Edgar Weippl and Brigitte Lutz (City of Vienna). Philipp Schindler then kicked off the main track with his talk on “Building Blocks for Blockchains and Distributed… Read More
How a free data transfer can connect with IT-Security will be discussed at the Privacy and Ethics at Forum Alpbach. TU Austria, a merge of the Technical University Vienna, Technical University Graz and the University of Leoben, is organizing a highly engaged Breakout Session and Workshop. Several Topics are covering… Read More
Katharina Pfeffer joined the Seminar on Software Protection Decision Support and Evaluation Methodologies taking place from August 11-16 at Schloss Dagstuhl. This Dagstuhl Seminar on Software Protection Decision Support and Evaluation Methodologies addressed open challenges in developing a holistic, generally applicable methodology and tool support to model and evaluate… Read More
Artificial Intelligence – certainly one of the most hyped topics of our time – has been the motto of this year´s IMPACT. Bestseller author Karl Olsberg´s highly anticipated keynote on “Artificial Intelligence and Human Stupidity” opened the door for a lively discussion shedding light on myth and reality. Read More
Kathrin is a medical oncologist at the Center of Hematology and Medical Oncology, Wilhelminenspital, Wien. Kathrin is the medical lead of the project “Semantische Suche” run by the Clinical Research Center of Wiener Krankenanstaltenverbund. The goal of this project is to extract data (diagnoses, medication, services etc.) from unstructured… Read More
We had a great time at the 5th security Meetup @ SBA Research! +50 participants 6 Application Security Design Patterns Good time at our terrace Don’t miss our next meetup on 04 September!Topic: “Secure Credential Management with Vault in Kubernetes”… Read More
Tomasz Miksa, acting as the co-chair of the DMP Common Standards working group, presented a new standard for machine-actionable DMPs at the webinar organised by Research Data Alliance (RDA). The webinar attracted more than 230 participants from all around the world. The webinar focused on RDA groups and… Read More
Researchers have developed a program that enables identification of almost every American through anonymized data.Maha Sounble gave a talk on “pseudonymization vs anonomyzation” at the 2019 sec4dev conference + bootcamp. Read more
The Laravel framework versions between 11.9.0 and 11.35.1 are susceptible to reflected cross-site scripting due to an improper encoding of route parameters in the debug-mode error page. ∞