Today I submitted my dissertation "Understanding Emerging Client-Side Web Vulnerabilities using Dynamic Program Analysis". Even though it feels like the end of a journey, I am very excited for the next one waiting just around the corner!
Among the alumni of my group, @AuroreFass recently joined CISPA as a faculty, @s3br0th is currently at postdoc at TU Wien, and @steffens_marius is having fun at Google these days. Want to follow in all of their footsteps? Then go ahead and visit https://t.co/GH7MUYEK5u!
Want to help us to keep OSS infra a tad more secure? It even has the AI/ML label attached, so jump aboard the hype train and contribute some detectors to the Tsunami network scanner.
Are you passionate about expanding the capabilities of the Tsunami network scanner, and would like to help keep AI infrastructure secure? See our blog post for details on getting involved and how your efforts will be rewarded 💸!
https://t.co/Cy71QpCyb0 https://t.co/UvRmdKnZlx
OMG, our "Cookie Crumbles" paper got into the Top-10 Web Hacking Techniques of 2023 by @PortSwiggerRes! Have a look at the paper if you haven't yet https://t.co/eIJpUBKUy9 and check the other outstanding finalists!
Thank you ❤️
The Web is going MAD again! Join us for the 6th #MADWeb (Measurements, Attacks, and Defenses for the Web) workshop @NDSSSymposium on March 1, 2024! Please, help us spread the words.
Paper submission deadline: Jan 10 AoE
CfP: https://t.co/0GPw4db9hH
CC @yzcao
@kcotsneb@s3br0th@matteo_maffei Congrats @s3br0th, it was a real pleasure having shared journeys with you for so long and I will forever have “All night long” burned into the back of my brain.
The Web is going MAD again! Join us for the 5th #MADWeb workshop @NDSSSymposium 2023!
Please consider submitting your awesome Web Security & Privacy research (deadline: Dec 9 AoE), and help us spread the words!
CFP: https://t.co/0GPw4dsK9f
@zubair_shafiq
@kcotsneb@CISPA@ruhrsec Ah damn, I remember talking about wanting to go but then I totally forgot :(
Enjoy Ruhrsec and hopefully see y’all again soon :)
My team @google is hiring software engineers with a security background in the bay area. We are developing various security scanning tools with a focus on quality and scale. Many of our tools are open source. PM me for details and please RT.
Well deserved, Ben! I could not have wished for a better academic mentor/advisor.
I saw that https://t.co/nzAPW0WK6X features some new pointers for prospective PhD students. This is an excellent place to be for Web research, don't miss out on the opportunity folks.
Today, I can officially announce that I have been awarded tenure at @CISPA. It has been a fascinating journey to get here and I want to thank some folks. First, @thorstenholz and Felix Freiling who sparked my interest in IT security early in my studies.
Super excited to see a student I supervised win a price for his Bachelor Thesis! Moritz Wilhelm, a student in my group and now Master student at @SIC_Saar@Saar_Uni won the CAST price for best bachelor thesis (https://t.co/FGhX2YXueZ)
Out of 7 trips with @DB_Bahn between my hometown and Zurich, not a single trip concluded without major delays.
In today’s episode: train starts 35 minutes late. Ah btw the next train to Zurich has high demand so good luck with that seat reservation.
Well-designed content security policies (CSP) should be able to prevent cross-site scripting attacks.
But do they actually keep your application secure?
Or do they fail in practice?
Let's find out, at #FuzzConEurope
https://t.co/O9BQmgRiPF
Together with @yazz_acar, I am workshop's co-chair for @NDSSSymposium 2022. Get your proposals in until October 3! All details available at https://t.co/Bg2YI99Een. We particularly encourage proposals that involve junior members in the reviewing process! Spread the word :-)
Great work by a bunch of awesome researchers!
If you ever wondered how deploying a CSP works (or does not work) for folks that have not read the CSP standard cover to cover, look no further.
Ever wondered why so many CSPs in the wild are trivially bypassable? In our new @acm_ccs 2021 paper we conducted a study to uncover the root causes behind those omnipresent misconfigurations.
Read it here: https://t.co/Za5sMharMQ
CC: @_lgroeber @cathykxx @kcotsneb@CISPA
Yesterday I successfully defended my PhD thesis :D
I want to use this opportunity to thank everyone that was part of this journey(be it family, friends, colleagues, or peers in our field).
You all contributed to making this a wonderful experience.
Thank you so much!
Happy to announce my second PhD, @steffens_marius defended his PhD thesis today with distinction. Super happy and proud to have seen him grow over the last years. Thanks also to @asabelfeld and @CasCremers for being part of the committee.