@inbook{15897,
  author       = {{Altmeier, Christian and Mainka, Christian and Somorovsky, Juraj and Schwenk, Jörg}},
  booktitle    = {{Data Privacy Management, and Security Assurance - 10th International Workshop, {DPM} 2015, and 4th International Workshop, {QASA} 2015}},
  isbn         = {{9783319298825}},
  issn         = {{0302-9743}},
  location     = {{Vienna}},
  title        = {{{AdIDoS – Adaptive and Intelligent Fully-Automatic Detection of Denial-of-Service Weaknesses in Web Services}}},
  doi          = {{10.1007/978-3-319-29883-2_5}},
  year         = {{2015}},
}

@inproceedings{15898,
  author       = {{Jager, Tibor and Schwenk, Jörg and Somorovsky, Juraj}},
  booktitle    = {{Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security - CCS '15}},
  isbn         = {{9781450338325}},
  title        = {{{On the Security of TLS 1.3 and QUIC Against Weaknesses in PKCS#1 v1.5 Encryption}}},
  doi          = {{10.1145/2810103.2813657}},
  year         = {{2015}},
}

@inbook{15899,
  author       = {{Jager, Tibor and Schwenk, Jörg and Somorovsky, Juraj}},
  booktitle    = {{Computer Security -- ESORICS 2015}},
  isbn         = {{9783319241739}},
  issn         = {{0302-9743}},
  title        = {{{Practical Invalid Curve Attacks on TLS-ECDH}}},
  doi          = {{10.1007/978-3-319-24174-6_21}},
  year         = {{2015}},
}

@inproceedings{15900,
  author       = {{Niemietz, Marcus and Somorovsky, Juraj and Mainka, Christian and Schwenk, Jorg}},
  booktitle    = {{International Workshop on Secure Internet of Things (SIoT)}},
  isbn         = {{9781467377690}},
  title        = {{{Not so Smart: On Smart TV Apps}}},
  doi          = {{10.1109/siot.2015.13}},
  year         = {{2015}},
}

@inproceedings{15911,
  author       = {{Kupser, Dennis and Mainka, Christian and Schwenk, Jö and Somorovsky, Juraj}},
  booktitle    = {{9th {USENIX} Workshop on Offensive Technologies ({WOOT} 15)}},
  publisher    = {{{USENIX} Association}},
  title        = {{{How to Break XML Encryption -- Automatically}}},
  year         = {{2015}},
}

@inproceedings{15904,
  author       = {{Meyer, Christopher and Somorovsky, Juraj and Weiss, Eugen and Schwenk, Jörg and Schinzel, Sebastian and Tews, Erik}},
  booktitle    = {{23rd {USENIX} Security Symposium ({USENIX} Security 14)}},
  isbn         = {{978-1-931971-15-7}},
  pages        = {{733--748}},
  publisher    = {{{USENIX} Association}},
  title        = {{{Revisiting SSL/TLS Implementations: New Bleichenbacher Side Channels and Attacks}}},
  year         = {{2014}},
}

@phdthesis{15901,
  abstract     = {{XML Encryption and XML Signature describe how to apply encryption and signing algorithms to XML documents. These specifications are implemented in a wide range of systems and frameworks processing sensitive data, including banking, eGovernment, eCommerce, military, and eHealth infrastructures. The article presents practical and highly critical attacks which allow to forge signed XML documents or reveal contents of encrypted XML data.}},
  author       = {{Somorovsky, Juraj}},
  issn         = {{1611-2776}},
  title        = {{{On the insecurity of XML Security}}},
  doi          = {{10.1515/itit-2014-1045}},
  year         = {{2013}},
}

@inproceedings{15902,
  author       = {{Falkenberg, Andreas and Mainka, Christian and Somorovsky, Juraj and Schwenk, Jörg}},
  booktitle    = {{2013 IEEE 20th International Conference on Web Services}},
  isbn         = {{9780769550251}},
  title        = {{{A New Approach towards DoS Penetration Testing on Web Services}}},
  doi          = {{10.1109/icws.2013.72}},
  year         = {{2013}},
}

@article{15903,
  author       = {{Mainka, Christian and Mladenov, Vladislav and Somorovsky, Juraj and Schwenk, Jörg}},
  journal      = {{CEUR Workshop Proceedings}},
  pages        = {{31--35}},
  title        = {{{Penetration test tool for XML-based web services}}},
  volume       = {{965}},
  year         = {{2013}},
}

@inproceedings{15918,
  author       = {{Jager, Tibor and Paterson, Kenneth G. and Somorovsky, Juraj}},
  booktitle    = {{20th Annual Network and Distributed System Security Symposium, NDSS 2013, San Diego, California, USA, February 24-27, 2013}},
  title        = {{{One Bad Apple: Backwards Compatibility Attacks on State-of-the-Art Cryptography}}},
  year         = {{2013}},
}

@inproceedings{15888,
  author       = {{Somorovsky, Juraj and Mayer, Andreas and Schwenk, Jörg and Kampmann, Marco and Jensen, Meiko}},
  booktitle    = {{Presented as part of the 21st {USENIX} Security Symposium ({USENIX} Security 12)}},
  isbn         = {{978-931971-95-9}},
  pages        = {{397--412}},
  publisher    = {{{USENIX}}},
  title        = {{{On Breaking SAML: Be Whoever You Want to Be}}},
  year         = {{2012}},
}

@inproceedings{15890,
  author       = {{Somorovsky, Juraj and Schwenk, Jörg}},
  booktitle    = {{2012 IEEE Eighth World Congress on Services}},
  isbn         = {{9781467330534}},
  title        = {{{Technical Analysis of Countermeasures against Attack on XML Encryption -- or -- Just Another Motivation for Authenticated Encryption}}},
  doi          = {{10.1109/services.2012.6}},
  year         = {{2012}},
}

@inbook{15891,
  author       = {{Jager, Tibor and Schinzel, Sebastian and Somorovsky, Juraj}},
  booktitle    = {{Computer Security – ESORICS 2012}},
  isbn         = {{9783642331664}},
  issn         = {{0302-9743}},
  title        = {{{Bleichenbacher’s Attack Strikes again: Breaking PKCS#1 v1.5 in XML Encryption}}},
  doi          = {{10.1007/978-3-642-33167-1_43}},
  year         = {{2012}},
}

@inproceedings{15917,
  author       = {{Somorovsky, Juraj and Meyer, Christopher and Tran, Thang and Sbeiti, Mohamad and Schwenk, Jörg and Wietfeld, Christian}},
  title        = {{{Sec2: Secure Mobile Solution for Distributed Public Cloud Storages}}},
  year         = {{2012}},
}

@inproceedings{15885,
  author       = {{Somorovsky, Juraj and Heiderich, Mario and Jensen, Meiko and Schwenk, Jörg and Gruschka, Nils and Lo Iacono, Luigi}},
  booktitle    = {{Proceedings of the 3rd ACM workshop on Cloud computing security workshop - CCSW '11}},
  isbn         = {{9781450310048}},
  title        = {{{All your clouds are belong to us: security analysis of cloud management interfaces}}},
  doi          = {{10.1145/2046660.2046664}},
  year         = {{2011}},
}

@inproceedings{15887,
  author       = {{Jensen, Meiko and Meyer, Christopher and Somorovsky, Juraj and Schwenk, Jörg}},
  booktitle    = {{2011 1st International Workshop on Securing Services on the Cloud (IWSSC)}},
  isbn         = {{9781457711855}},
  title        = {{{On the effectiveness of XML Schema validation for countering XML Signature Wrapping attacks}}},
  doi          = {{10.1109/iwsscloud.2011.6049019}},
  year         = {{2011}},
}

@inproceedings{15915,
  author       = {{Jager, Tibor and Somorovsky, Juraj}},
  booktitle    = {{Proceedings of the 18th ACM conference on Computer and communications security - CCS '11}},
  isbn         = {{9781450309486}},
  title        = {{{How to break XML encryption}}},
  doi          = {{10.1145/2046707.2046756}},
  year         = {{2011}},
}

@inproceedings{15916,
  author       = {{Meyer, Christopher and Somorovsky, Juraj and Driessen, Benedikt and Schwenk, Jörg and Tran, Thang and Wietfeld, Christian}},
  title        = {{{Sec2: Ein mobiles Nutzer-kontrolliertes Sicherheitskonzept für Cloud-Storage}}},
  year         = {{2011}},
}

@inproceedings{15889,
  author       = {{Somorovsky, Juraj and Jensen, Meiko and Schwenk, Jörg}},
  booktitle    = {{2010 6th World Congress on Services}},
  isbn         = {{9781424481996}},
  title        = {{{Streaming-Based Verification of XML Signatures in SOAP Messages}}},
  doi          = {{10.1109/services.2010.57}},
  year         = {{2010}},
}

