Categories
random research security

Social Snapshot Pilot – Completed

In the past six month 97 people participated in our social snapshot pilot survey. As of now, the pilot application is not available for public testing anymore. We are currently working an updated release of our social snapshot framework, with plenty of new functionality and performance improvements. So stay tuned for the upcoming release of […]

Categories
random security

Google+ and Diaspora: Secure Connection (HTTPS) per default

I recently got invited to Google+ and had a curious first look. Google+ seems to be enforcing HTTPS on all pages. Given the current Facebook security issue with HTTPS this is good news. Also had a look at diaspora*, which has some active development. First public community supported diaspora* pods, such as diasp.org or diasp.eu […]

Categories
research security

Dropbox Security: Dark Clouds on the Horizon at USENIX’11

Back in March 2010 we started an investigation into online file storage services and Dropbox in particular. Sebastian and Manuel started to disassemble the Dropbox binary and in essence created an alternative client by patching its crypto libraries. In the months that followed we found a number of security flaws with Dropbox. In November 2010 […]