| Seitenkanalangriffe im Web (pdf) Sebastian Schinzel 19. DFN Workshop "Sicherheit in vernetzten Systemen" |
| Podiumsdiskussion: "2011, das Jahr der Datendiebstähle - Wann werden Entwicklungsprojekte endlich Softwareanwendungen erstellen, die wenigstens den offensichtlichen Angriffen widerstehen?" Sebastian Schinzel Softwareforen Leipzig: Jahrestreffen |
|
Time is on my Side - Exploiting Timing Side Channel Vulnerabilities on the Web (pdf, YouTube) Sebastian Schinzel 28th Chaos Communication Congress - Behind Enemy Lines |
| Quellcodescans von Webanwendungen in der Praxis - Friend or Foe Sebastian Schinzel Softwareforen Leipzig: User Group - IT-Sicherheit (pdf) |
|
Quellcodescans von Webanwendungen in der Praxis - gängige Fallstricke und Wege zum erfolgreichen Einsatz in Unternehmen (pdf) Sebastian Schinzel German OWASP Day 2011 |
|
SAP-Security - Sicherheitslöcher in eigenem ABAP-Code stopfen (pdf) |
Detecting Hidden Storage Side Channel Vulnerabilities in Networked Applications (pdf)
Felix C. Freiling and Sebastian Schinzel
IFIP sec2011 - Future Challenges in Security and Privacy for Academia and Industry
An Efficient Mitigation Method for Timing Side Channels on the Web (pdf)
Sebastian Schinzel
2nd International Workshop on Constructive Side-Channel Analysis and Secure Design
|
Side Channel Vulnerabilities on the Web - Detection and Prevention Sebastian Schinzel Hackerpraktikum - Ruhr-Universität-Bochum |
|
Seitenkanalschwachstellen im Web erkennen und verhindern (Side Channel Vulnerabilities on the Web - Detection and Prevention) Sebastian Schinzel OWASP AppSec Germany 2010 Conference |
|
Sichere Entwicklung und gängige Schwachstellen in eigenentwickelten SAP-Web-Anwendungen Sebastian Schinzel OWASP AppSec Germany 2009 Conference |
| Software Supply Chain Integrity in SAP Applications Sebastian Schinzel, Gunter Bitz, Andreas Wiegenstein, Markus Schumacher, Frederik Weidemann Security Acts Journal |
Security mechanisms of a legal peer-to-peer file sharing system
Sebastian Schinzel, Martin Schmucker, Peter Ebinger
IADIS International Journal on Computer Science and Information Systems
![]() |
Sichere ABAP-Programmierung (Book in German Language) |
| Andreas Wiegenstein, Markus Schumacher, Sebastian Schinzel, Frederik Weidemann | |
| SAP Press |
|
Measuring the Security of Web Applications Sebastian Schinzel OWASP Germany 2008 Conference |
| Assessing and Measuring Security in Custom SAP Applications Sebastian Schinzel Conference: Mastering SAP Technologies, Goldcoast, Australia |
| The Missing Link: Compliance at the Code Level Markus Schumacher, Sebastian Schinzel, Andreas Wiegenstein SAP Experts - GRC Expert |
|
The Need for Measuring Software Security Markus Schumacher, Sebastian Schinzel Testing Experience - No. 01/08 |
Security mechanisms of a legal peer-to-peer file sharing system
Peter Ebinger, Sebastian Schinzel, Martin Schmucker
IADIS International Conference Applied Computing 2008
| Mastering Application Security - Threats and Countermeasures Sebastian Schinzel Conference: Mastering SAP Technologies, Melbourne, Australia |
An Ad Hoc Writeable Rule Language for White-Box Security Scanners
Sebastian Schinzel
Master Thesis - Virtual Forge Research Department
Writing Fast And Secure Code in C
Sebastian Schinzel
White Paper - Virtual Forge Research Department
Security mechanisms of a legal peer-to-peer file sharing system
Sebastian Schinzel
Bachelor Thesis (Fraunhofer Institute for Computer Graphics Research)
Please find open thesis proposals on my personal page at FAU.
| Finished | Type | Topic | Name of student | Affiliation |
| June 2011 | Bachelor | Fingerprinting Rules of Web Applications Firewalls through Timing Side Channels | Isabell Schmitt | Universität Mannheim - Praktische Informatik I |
| June 2011 | Bachelor | Fingerprinting of XML Programming Libraries through Storage Side Channels | Thilo Mothes | Universität Mannheim - Praktische Informatik I |
| June 2011 | Bachelor | Side Channel Vulnerabilities in Web Application Firewalls | Stefan Kuch, Simon Lehmann | Ergon AG in cooperation with Zurich University of Applied Sciences - InIT Institute of Applied Information Technology |
| September 2011 | Diplom | Quantification of Information Flows in Business Networks | Dennis Möbius | Universität Mannheim - Praktische Informatik I |
| January 2012 | Diplom | Advanced Fingerprinting Techniques for the Recognition of Vulnerable Programming Libraries at the Example of Image Processing Libraries | Sebastian Merk | Security Research Group - Department of Computer Science Friedrich-Alexander-University Erlangen-Nuremberg |
| April 2012 | Bachelor | Das anonyme Netzwerk TOR und verdeckte Kommunikation | Benjamin Kahler | Security Research Group - Department of Computer Science Friedrich-Alexander-University Erlangen-Nuremberg in cooperation with Augsburg University of Applied Sciences |
| ongoing | Diplom | Fingerprinting-Techniken zur Erkennung anfälliger XML-Bibliotheken | Anders Dicker | Security Research Group - Department of Computer Science Friedrich-Alexander-University Erlangen-Nuremberg |