The research group SECUSO (Security • Usability • Society) belongs to the Institute of Applied Informatics and Formal Description Methods (AIFB) of the Karlsruhe Institute of Technology (KIT). The group was founded in 2011 by Prof. Dr. Melanie Volkamer at the TU Darmstadt. SECUSO moved to the Karlsruhe Institute of Technology at the beginning of 2018. SECUSO is a member of Kastel, K-CIST and KD²Lab.
On Saturday, May 9, Europe Day will be celebrated at Karlsruhe’s Marktplatz. Under the motto “We Make Europe”, local and regional advocates for Europe are organizing a diverse program of interactive activities. The “Wir forschen digital” Citizens' Panel is also participating in collaboration with the Center Humans and Technology at KIT. Come to the pavilion in front of the MobiLab starting at 11 am and learn more about Wir forschen digital—with a little luck, you might even win a prize!
About Europe DayWe have released a new update for PassSec+. Many modern websites are designed dynamically, which means that login fields are often only displayed or changed after the page has loaded or after a user clicks a button such as “Login” or “Continue”. We have improved PassSec+ to better recognize such dynamically added or updated fields. This helps the extension work more reliably on modern websites. In addition, the new version includes smaller technical improvements and is now available as version 3.4.1 via the Mozilla Add-ons website.
Link: PassSec+In a paper recently published on arXiv, Maxime Veit, Mattia Mossano, Tobias Länge, and Melanie Volkamer present a structured list of deception techniques used in emails. The paper describes how sender, link, and attachment information, as well as the email display environment, can be exploited for deceptive attacks. Building on an earlier systematic literature review, the publication expands the current state of research with new example implementations and newly identified deception techniques. It serves as a structured reference for future countermeasures in infrastructure, email client design, and awareness initiatives, and is aimed at researchers as well as developers, operators, and designers in these fields.
Read the paperAnne Hennig is currently visiting the University of Southern Denmark (SDU) in Odense as part of a research fellowship. There, she is working with Prof. Dr. Peter Mayer in the Department of Mathematics and Computer Science. Over the next three months, they plan to complete joint research projects related to vulnerability notifications.
More information