Please note that LibreCat no longer supports Internet Explorer versions 8 or 9 (or earlier).

We recommend upgrading to the latest Internet Explorer, Google Chrome, or Firefox.

44 Publications


2023 | Conference Paper | LibreCat-ID: 43060 | OA
Hebrok, S. N., Nachtigall, S., Maehren, M., Erinola, N., Merget, R., Somorovsky, J., & Schwenk, J. (2023). We Really Need to Talk About Session Tickets: A Large-Scale Analysis of Cryptographic Dangers with TLS Session Tickets. 32nd USENIX Security Symposium.
LibreCat | Download (ext.)
 

2023 | Conference Paper | LibreCat-ID: 48012
Rossel, J., Mladenov, V., & Somorovsky, J. (2023). Security Analysis of the 3MF Data Format. Proceedings of the 26th International Symposium on Research in Attacks, Intrusions and Defenses. 26th International Symposium on Research in Attacks, Intrusions and Defenses, Hongkong. https://doi.org/10.1145/3607199.3607216
LibreCat | Files available | DOI | Download (ext.)
 

2023 | Conference Paper | LibreCat-ID: 46500
Pottebaum, J., Rossel, J., Somorovsky, J., Acar, Y., Fahr, R., Arias Cabarcos, P., Bodden, E., & Gräßler, I. (2023). Re-Envisioning Industrial Control Systems Security by Considering Human Factors as a Core Element of Defense-in-Depth. 2023 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW), 379–385. https://doi.org/10.1109/eurospw59978.2023.00048
LibreCat | DOI | Download (ext.)
 

2023 | Conference Paper | LibreCat-ID: 49654
Niere, N., Hebrok, S. N., Somorovsky, J., & Merget, R. (2023). Poster: Circumventing the GFW with TLS Record Fragmentation. Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security. https://doi.org/10.1145/3576915.3624372
LibreCat | DOI
 

2022 | Conference Paper | LibreCat-ID: 32572
Mayer, P., Poddebniak, D., Fischer, K., Brinkmann, M., Somorovsky, J., Sasse, A., Schinzel, S., & Volkamer, M. (2022). “I don’ know why I check this...” - Investigating Expert Users’ Strategies to Detect Email Signature Spoofing Attacks. Eighteenth Symposium on Usable Privacy and Security (SOUPS 2022), 77–96.
LibreCat
 

2022 | Conference Paper | LibreCat-ID: 32573
Maehren, M., Nieting, P., Hebrok, S. N., Merget, R., Somorovsky, J., & Schwenk, J. (2022). TLS-Anvil: Adapting Combinatorial Testing for TLS Libraries. 31st USENIX Security Symposium (USENIX Security 22).
LibreCat
 

2021 | Conference Paper | LibreCat-ID: 25331
Brinkmann, M., Dresen, C., Merget, R., Poddebniak, D., Müller, J., Somorovsky, J., Schwenk, J., & Schinzel, S. (2021). ALPACA: Application Layer Protocol Confusion - Analyzing and Mitigating Cracks in TLS Authentication. 30th {USENIX} Security Symposium ({USENIX} Security 21), 4293–4310.
LibreCat
 

2021 | Conference Paper | LibreCat-ID: 25332
Merget, R., Brinkmann, M., Aviram, N., Somorovsky, J., Mittmann, J., & Schwenk, J. (2021). Raccoon Attack: Finding and Exploiting Most-Significant-Bit-Oracles in TLS-DH(E). 30th {USENIX} Security Symposium ({USENIX} Security 21), 213–230.
LibreCat
 

2021 | Journal Article | LibreCat-ID: 24143
Drees, J. P., Gupta, P., Hüllermeier, E., Jager, T., Konze, A., Priesterjahn, C., Ramaswamy, A., & Somorovsky, J. (2021). Automated Detection of Side Channels in Cryptographic Protocols: DROWN the ROBOTs! 14th ACM Workshop on Artificial Intelligence and Security.
LibreCat
 

2020 | Conference Paper | LibreCat-ID: 25334
Fiterau-Brostean, P., Jonsson, B., Merget, R., de Ruiter, J., Sagonas, K., & Somorovsky, J. (2020). Analysis of DTLS Implementations Using Protocol State Fuzzing. 29th {USENIX} Security Symposium ({USENIX} Security 20), 2523–2540.
LibreCat
 

2020 | Conference Paper | LibreCat-ID: 25336
Schwenk, J., Brinkmann, M., Poddebniak, D., Müller, J., Somorovsky, J., & Schinzel, S. (2020). Mitigation of Attacks on Email End-to-End Encryption. Proceedings of the 2020 ACM SIGSAC Conference on Computer and Communications Security, 1647–1664. https://doi.org/10.1145/3372297.3417878
LibreCat | DOI
 

2019 | Conference Paper | LibreCat-ID: 15908 | OA
Müller, J., Brinkmann, M., Poddebniak, D., Böck, H., Schinzel, S., Somorovsky, J., & Schwenk, J. (2019). “Johnny, you are fired!” -- Spoofing OpenPGP and S/MIME Signatures in Emails. In 28th {USENIX} Security Symposium ({USENIX} Security 19) (pp. 1011–1028). Santa Clara, CA: {USENIX} Association.
LibreCat | Download (ext.)
 

2019 | Conference Paper | LibreCat-ID: 15909 | OA
Merget, R., Somorovsky, J., Aviram, N., Young, C., Fliegenschmidt, J., Schwenk, J., & Shavitt, Y. (2019). Scalable Scanning and Automatic Classification of TLS Padding Oracle Vulnerabilities. In 28th {USENIX} Security Symposium ({USENIX} Security 19) (pp. 1029–1046). Santa Clara, CA: {USENIX} Association.
LibreCat | Download (ext.)
 

2019 | Conference Paper | LibreCat-ID: 15910
Engelbertz, N., Mladenov, V., Somorovsky, J., Herring, D., Erinola, N., & Schwenk, J. (2019). Security Analysis of XAdES Validation in the CEF Digital Signature Services (DSS). In H. Roßnagel, S. Wagner, & D. Hühnlein (Eds.), Open Identity Summit 2019 (pp. 95–106). Gesellschaft für Informatik, Bonn.
LibreCat
 

2018 | Conference Paper | LibreCat-ID: 15892
Albrecht, M. R., Massimo, J., Paterson, K. G., & Somorovsky, J. (2018). Prime and Prejudice: Primality Testing Under Adversarial Conditions. In Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security. https://doi.org/10.1145/3243734.3243787
LibreCat | DOI | Download (ext.)
 

2018 | Conference Paper | LibreCat-ID: 15893
Poddebniak, D., Somorovsky, J., Schinzel, S., Lochter, M., & Rosler, P. (2018). Attacking Deterministic Signature Schemes Using Fault Attacks. In 2018 IEEE European Symposium on Security and Privacy (EuroS&P). https://doi.org/10.1109/eurosp.2018.00031
LibreCat | DOI
 

2018 | Conference Paper | LibreCat-ID: 15894
Detering, D., Somorovsky, J., Mainka, C., Mladenov, V., & Schwenk, J. (2018). On The (In-)Security Of JavaScript Object Signing And Encryption. In Proceedings of the 1st Reversing and Offensive-oriented Trends Symposium on - ROOTS. https://doi.org/10.1145/3150376.3150379
LibreCat | DOI
 

2018 | Conference Paper | LibreCat-ID: 15905 | OA
Poddebniak, D., Dresen, C., Müller, J., Ising, F., Schinzel, S., Friedberger, S., … Schwenk, J. (2018). Efail: Breaking S/MIME and OpenPGP Email Encryption using Exfiltration Channels. In 27th {USENIX} Security Symposium ({USENIX} Security 18) (pp. 549–566). Baltimore, MD: {USENIX} Association.
LibreCat | Download (ext.)
 

2018 | Conference Paper | LibreCat-ID: 15906 | OA
Böck, H., Somorovsky, J., & Young, C. (2018). Return Of Bleichenbacher\textquoterights Oracle Threat (ROBOT). In 27th {USENIX} Security Symposium ({USENIX} Security 18) (pp. 817–849). Baltimore, MD: {USENIX} Association.
LibreCat | Download (ext.)
 

2018 | Conference Paper | LibreCat-ID: 15914 | OA
Engelbertz, N., Erinola, N., Herring, D., Somorovsky, J., Mladenov, V., & Schwenk, J. (2018). Security Analysis of eIDAS -- The Cross-Country Authentication Scheme in Europe. In 12th {USENIX} Workshop on Offensive Technologies ({WOOT} 18). Baltimore, MD: {USENIX} Association.
LibreCat | Download (ext.)
 

Filters and Search Terms

(person=83504)

status=public

Search

Filter Publications

Display / Sort

Citation Style: APA

Export / Embed