Official inauguration of Fraunhofer IEM

Eric | March 31, 2017

Today we were very happy to host NRW’s minister of science Svenja Schulze and Fraunhofer’s Director of Science Dr. Raoul Klingner for the official inauguration of Fraunhofer IEM. The new institute is the first to be founded within NRW within the past 20 years, and was bootstrapped in just about seven years – a new record in the Fraunhofer Society.

Cross-posted from Secure Software Engineering

Comments
Comments Off on Official inauguration of Fraunhofer IEM
Categories
Misc, Research, Uncategorized

IEEE S&P Paper on Hardening the Java Runtime is now available

Eric | March 20, 2017

Our new S&P paper Hardening Java’s Access Control by Abolishing Implicit Privilege Elevation is now available online. It is a follow-up work to our previous CCS’16 paper An In-Depth Study of More Than Ten Years of Java Exploitation. In this former paper we classified a large number of history Java exploits. In doing so, we found that the largest class of exploits was made possible by shortcuts in Java’s implementation of access control. In the S&P paper we now show that it is possible to go without those shortcuts, without any loss of performance. We also discuss the usability implications that this removal of shortcuts would have.

Cross-posted from Secure Software Engineering

Comments
Comments Off on IEEE S&P Paper on Hardening the Java Runtime is now available
Categories
Misc, Research, Uncategorized

New Paper “The Soot-based Toolchain For Analyzing Android Apps”

Eric | March 3, 2017

Steven, Siegfried and I have just completed our invited paper for MOBILESoft’17. The paper The Soot-based Toolchain For Analyzing Android Apps summarizes for the first time the Soot-based tool chain for analyzing Android apps that we have built up over the past years. We hope you will enjoy the read!

And if you attend ICSE, maybe consider attending MOBILESoft as well, and you will be able to attend my keynote talk.

Cross-posted from Secure Software Engineering

Comments
Comments Off on New Paper “The Soot-based Toolchain For Analyzing Android Apps”
Categories
Misc, Research, Uncategorized

TV Interview on Smart Home Security

Eric | March 1, 2017

The local television interviewed me today on Smart Home Security. You can watch the video here. Skip to about 9 minutes.

Cross-posted from Secure Software Engineering

Comments
Comments Off on TV Interview on Smart Home Security
Categories
Misc, Research, Uncategorized