Projects of the research group Information Security
-
Runtime Vulnerability Detection in Android Pre-installed Apps
Pre-installed apps on Android devices typically have elevated privileges, restricted removal options, and broader access to sensitive system resources. This privileged status makes them attractive targets for attackers, introducing significant security risks. However, their security evaluation is…
current, 03/2025 - 06/2026
-
A Resilient and Efficient Cyber-security Fabric and Evaluation Framework for Future Integrated Satellite-Terrestrial Networks (SATUQ)
The SATUQ project aims to address the needs of trustworthy next-generation space-aerial-terrestrial integrated networks (SATIN) by developing a fast and lightweight network security fabric for the post-quantum era.
current, 01/2025 - 12/2027
-
Dynamic Security Analysis of Android Pre-installed Apps
The project aims at enhancing security testing methodologies for Android pre-installed applications. It encompasses empirically evaluation of hindering factors associated with dynamic analysis of pre-installed apps on the Android emulator. To be more precise, the feasibility of rehosting Android…
expired, 03/2024 - 06/2025
-
Net-Zero self-adaptive activation of distributed self-resilient augmented services (NATWORK)
The ambition of the EU NATWORK project funded by Horizon Europe - 6G SNS (2024-2026) is to set the foundations and deploy the very first economically realistic, energy efficient, and viable bio-inspired AI-based 6G cybersecurity and resilience framework for intelligent networking and services,…
current, 01/2024 - 12/2026
-
Automated Web Server Classification (HD.ng++)
The project Automated Web Server Classification (HD.ng++) creates a system to support an analyst in a Security Operations Center (SOC). The developed system provides meta-information on domains and IP addresses to assist SOC-Analysts by the investigation of potentially malicious domains or IP…
current, 09/2023 - 02/2026
-
Dynamic Analysis of Internal Android Systems
In this project, we focus on the current state of Android security. One main focus will be to determine current difficulties and limitations that hinder security researchers in performing a dynamic analysis of Android pre-installed software components such as pre-installed apps or native libraries.…
expired, 03/2023 - 06/2024
-
Automated Information Security Governance and Risk Management
expired, 02/2023 - 11/2023
-
Cyber Resilience Network For The Canton Of Zurich (CYREN-ZH)
How can we better protect ourselves from cyber threats? The answer to this question is as complex as cyber security itself, because the right balance must always be found between technical possibilities and political, social and economic interests. The increasing digitalisation of critical…
current, 11/2022 - 10/2027
-
FASTscan: Fully Automated Security Testing with scanmeter
In this R&D project, scanmeter - a service for the automated security analysis of IT systems - is being extended by three innovative components. This will significantly increase the level of automation and test coverage, significantly improve customer benefits, and expand the fields of applications.…
expired, 05/2021 - 12/2023
-
Usable Privacy: Contextual privacy notices for app users
Companies like Apple or Signal use short, contextual privacy notices as a supplement to extensive, often ineffective privacy statements. In the project, the design and impact of these short notices will be investigated using app prototypes in a quantitative research design.
expired, 09/2020 - 08/2021
-
Remote, Hands On Computer Networks Lab
expired, 05/2020 - 11/2020
-
OptiPhish – Effective and Measurable Phishing Awareness Training
In this project, LUCY - a system for phishing awareness training - will be significantly extended in order to put such training on a scientific basis and to bring it to a new level of quality. The goal is to provide completely automated, effective and individualized phishing awareness training with…
expired, 03/2020 - 02/2023
-
HostDetective – Next Generation Active and Passive Web Server Rating System
This project extends Exeon Analytics' ExeonTrace product with HostDetective Next Generation (HD.ng), a tool to identify and mitigate Web-related data breaches. HD.ng implements a novel active and passive Web server assessment method to determine the type, purpose and risk score of a Web server. This…
expired, 11/2019 - 05/2022
-
Intelligent Security and PervasIve Trust for 5G and Beyond (INSPIRE-5Gplus)
INSPIRE-5Gplus aims to make a revolutionary shift in the 5G and Beyond (B5G) security vision by progressing 5G Security and by devising a smart, trustworthy and liability-aware 5G security platform for future connected systems, while contributing to its realization. It will allow, for the first…
expired, 11/2019 - 10/2022
-
Trusted Loyalty Poinz
expired, 02/2019 - 12/2019
-
scanmeter Next Generation
scanmeter® is a service of a Swiss company that has already been launched on the market (scanmeter.io). scanmeter allows automated security analyses of IT systems. This significantly increases the efficiency of security analyses compared to manual methods. The automated security analyses can be used…
expired, 02/2019 - 04/2021
-
CNO Software Development 2019
Development and teaching of a course on various aspects of secure software development and hacking methods.
expired, 02/2019 - 12/2019
-
ATLAS – Electronic Data and Document Management for Small Pharma
Research on security requirements and innovation opportunities for a product for data capture and management in the domain of pharmaceutical product development.
expired, 09/2018 - 11/2018
-
Ad Fraud Detection Tools Plattform
expired, 08/2018 - 03/2019
-
SeCoSS: Secure Collaboration with SecureSafe
SecureSafe is an established and highly secure online storage service. In this project, SecureSafe will be extended with novel functionality and security components so that it supports secure and privacy-preserving collaboration between multiple parties, e.g. between a bank and its customers.
expired, 01/2018 - 12/2019