Zum Hauptinhalt springen

Showing 1–3 of 3 results for author: Schinzel, S

Searching in archive cs. Search in all archives.
.
  1. arXiv:2106.04974  [pdf, other

    cs.CR

    Grand Theft App: Digital Forensics of Vehicle Assistant Apps

    Authors: Simon Ebbers, Fabian Ising, Christoph Saatjohann, Sebastian Schinzel

    Abstract: Due to the increasing connectivity of modern vehicles, collected data is no longer only stored in the vehicle itself but also transmitted to car manufacturers and vehicle assistant apps. This development opens up new possibilities for digital forensics in criminal investigations involving modern vehicles. This paper deals with the digital forensic analysis of vehicle assistant apps of eight car ma… ▽ More

    Submitted 9 June, 2021; originally announced June 2021.

    Comments: This is the extended version of the Short Paper Grand Theft App: Digital Forensics of Vehicle Assistant Apps published at the 16th International Conference on Availability, Reliability and Security (ARES 2021)

  2. arXiv:2004.00939  [pdf, other

    cs.CR

    CORSICA: Cross-Origin Web Service Identification

    Authors: Christian Dresen, Fabian Ising, Damian Poddebniak, Tobias Kappert, Thorsten Holz, Sebastian Schinzel

    Abstract: Vulnerabilities in private networks are difficult to detect for attackers outside of the network. While there are known methods for port scanning internal hosts that work by luring unwitting internal users to an external web page that hosts malicious JavaScript code, no such method for detailed and precise service identification is known. The reason is that the Same Origin Policy (SOP) prevents ac… ▽ More

    Submitted 2 April, 2020; originally announced April 2020.

    Comments: Accepted to ASIACCS2020

  3. arXiv:1904.07550  [pdf

    cs.CR

    Re: What's Up Johnny? -- Covert Content Attacks on Email End-to-End Encryption

    Authors: Jens Müller, Marcus Brinkmann, Damian Poddebniak, Sebastian Schinzel, Jörg Schwenk

    Abstract: We show practical attacks against OpenPGP and S/MIME encryption and digital signatures in the context of email. Instead of targeting the underlying cryptographic primitives, our attacks abuse legitimate features of the MIME standard and HTML, as supported by email clients, to deceive the user regarding the actual message content. We demonstrate how the attacker can unknowingly abuse the user as a… ▽ More

    Submitted 17 April, 2019; v1 submitted 16 April, 2019; originally announced April 2019.