Research
The successful operation, maintenance, and further development of critical infrastructures like the Internet, mobile networks, or the power grid are key for life in our technology-oriented societies. The nEtwork and cRitical Infrastructure Security Group, short ERIS, focuses on the protection of complete infrastructures comprising of complex, interconnected systems. We particularly investigate (I) the Internet representing nowadays’ prime communication infrastructure, (II) mobile networks bringing the Internet anywhere, and (III) the power grids supplying the energy that is necessary for life in our technology-oriented societies.
Our research topics include:
- Network measurements
As a consequence of its decentralized organization, no map of the Internet is available and instead measurement experiments, similar to those in natural sciences like physics, are necessary to gain insights in the Internet’s current state. We develop novel measurement methods and run large-scale Internet measurement campaigns. Among others, the gained information allows to understand currently deployed Internet technology or the prevalence of vulnerabilities, and serves as a foundation for further improvement of the Internet as a whole. - IPv6 measurements
Due to address scarcity, the Internet currently undergoes a major transition from Internet Protocol version 4 (IPv4) to version 6 (IPv6). This does not only vastly increase the address space for measurement campaigns, but also gives raise to new vulnerabilities. We develop new resp. adapt existing methods for IPv6, and investigate how security changes when operating IPv6 or Dualstack (simultaneous operation of both protocols). - Measurement platforms
We operate two permanent research platforms, namely the Austrian Internet Measurement Hub (AIM) for active Internet measurements, and MobileAtlas for measurements in mobile networks. The platforms are also made available other researchers and students, e.g., for their bachelor or master theses. - Power grid security
The on-going digitization of legacy infrastructures makes them vulnerable to cyber-launched attacks. In this context, we develop novel attacks against the power grid and its ecosystem facilitated by these new digital opportunities in order to strengthen the resilience of this vital infrastructure.
Our research has lasting impact. Among others, our work (I) motivated the revision of RFC4941, an IPv6 address format for privacy detection, and respective implementations in client operating systems, (II) revealed multiple misconfigurations on the Internet and lead to the improvement at national ISPs, and (III) revealed vulnerabilites that were responsibly disclosed to the vendors.
Downloads
- I Have No Idea What I'm Doing - On the Usability of Deploying HTTPS
- Mobile Atlas - A Scalable Way to Measure Cellular Networks
- Power Grid Modelling - How Open Geoinformatic Data Benefits Security Research
- Proof-of-Blackouts - How Proof-of-Work Cryptocurrencies Could Affect Power Grids
- SmartIdentification - Secure Identification through Mobile Devices
- Actively Probing Routes for Tor AS-level Adversaries with RIPE Atlas
- Exploiting ICMPv6 Error Messages for Reconnaissance
- GridShock - Coordinated Load-Changing Attacks on Power Grids
The ERIS – Networks and Critical Infrastructures Security Research Group participates in the following research projects:
SBA-K1 (FP2)
SBA Research - K1 (FP2)
DynAISEC
Adaptive AI/ML for Dynamic Cybersecurity Systems
IPv6 Scanning
Handling Data from IPv6 Scanning
G-STAR
Gesamtstaatliche Erfassung der Resilienz im Kontext komplexer Krisenszenarien
AutoCyberSec – Training
Techniken aus dem Security Testing für die Bedrohungsmodellierung im Bereich Automotive
MobileAtlas
MobileAtlas
2big2fail
Identification and Disintegration of Single Points of Failure on the Internet
FuOnA
Future of Online Anonymity
SBA-K1 (FP1)
SBA Research - K1 (FP1)
CyPhySec
Framework to Cyber-Physical System Security
is researcher at SBA Research.
is researcher at SBA Research.
is researcher at SBA Research.
is researcher at SBA Research.
is researcher at SBA Research.
is researcher at SBA Research.
is key researcher at SBA Research and leads the Networks and Critical Infrastructures Security Research Group.
The following scientific partners and company partners are / have been working closely together with the Networks and Critical Infrastructures Security Research Group:
Teaching
The nEtwork and cRitical Infrastructure Security Group is also very active in teaching in subjects in their domain at multiple universities. This includes for example the following courses:
• Information Security Management, University of Vienna (Gabriel Gegenhuber)
• Operating Systems, University of Vienna (Gabriel Gegenhuber)
• Fundamentals of Networked Systems, University of Vienna (Johanna Ullrich)
• Principles of Computer Science, FH Wiener Neustadt (Johanna Ullrich)
Bachelor | Master | PhD - Thesis Supervision
The ERIS Research Group is supervising Bachelor, Master and PhD theses in the following areas.
- Network measurements
- Mobile measurements
- Internet Protocol version 6 (IPv6)
- Data analysis of network data
- Power grid security
- Power consumption of software/security
To contact the team, please reach out to the individual team members or to the team lead Johanna Ullrich.