Technische Universität Braunschweig
  • Study & Teaching
    • Beginning your Studies
      • Prospective Students
      • Degree Programmes
      • Application
      • Fit4TU
      • Why Braunschweig?
    • During your Studies
      • Fresher's Hub
      • Term Dates
      • Courses
      • Practical Information
      • Beratungsnavi
      • Additional Qualifications
      • Financing and Costs
      • Special Circumstances
      • Health and Well-being
      • Campus life
    • At the End of your Studies
      • Discontinuation and Credentials Certification
      • After graduation
      • Alumni
    • For Teaching Staff
      • Strategy, Offers and Information
      • Learning Management System Stud.IP
    • Contact
      • Study Service Centre
      • Academic Advice Service
      • Student Office
      • Career Service
  • Research
    • Research Profile
      • Core Research Areas
      • Clusters of Excellence at TU Braunschweig
      • Research Projects
      • Research Centres
      • Professors‘ Research Profiles
    • Early Career Researchers
      • Support in the early stages of an academic career
      • PhD-Students
      • Postdocs
      • Junior research group leaders
      • Junior Professorship and Tenure-Track
      • Habilitation
      • Service Offers for Scientists
    • Research Data & Transparency
      • Transparency in Research
      • Research Data
      • Open Access Strategy
      • Digital Research Announcement
    • Research Funding
      • Research Funding Network
      • Research funding
    • Contact
      • Research Services
      • Academy for Graduates
  • International
    • International Students
      • Why Braunschweig?
      • Degree seeking students
      • Exchange Studies
      • TU Braunschweig Summer School
      • Refugees
      • International Student Support
      • International Career Service
    • Going Abroad
      • Studying abroad
      • Internships abroad
      • Teaching and research abroad
      • Working abroad
    • International Researchers
      • Welcome Support for International Researchers
      • Service for Host Institutes
    • Language and intercultural competence training
      • Learning German
      • Learning Foreign Languages
      • Intercultural Communication
    • International Profile
      • Internationalisation
      • International Cooperations
      • Strategic partnerships
      • International networks
    • International House
      • About us
      • Contact & Office Hours
      • News and Events
      • International Days
      • 5th Student Conference: Internationalisation of Higher Education
      • Newsletter, Podcast & Videos
      • Job Advertisements
  • TU Braunschweig
    • Our Profile
      • Aims & Values
      • Regulations and Guidelines
      • Alliances & Partners
      • The University Development Initiative 2030
      • Ecoversity – the TU Braunschweig as a university ecosystem
      • Facts & Figures
      • Our History
    • Career
      • Working at TU Braunschweig
      • Vacancies
    • Economy & Business
      • Entrepreneurship
      • Friends & Supporters
    • General Public
      • Check-in for Students
      • CampusXperience
      • The Student House
      • Access to the University Library
    • Media Services
      • Communications and Press Service
      • Services for media
      • Film and photo permits
      • Advices for scientists
      • Topics and stories
    • Contact
      • General Contact
      • Getting here
  • Organisation
    • Presidency & Administration
      • Executive Board
      • Designated Offices
      • Administration
      • Committees
    • Faculties
      • Carl-Friedrich-Gauß-Fakultät
      • Faculty of Life Sciences
      • Faculty of Architecture, Civil Engineering and Environmental Sciences
      • Faculty of Mechanical Engineering
      • Faculty of Electrical Engineering, Information Technology, Physics
      • Faculty of Humanities and Education
    • Institutes
      • Institutes from A to Z
    • Facilities
      • University Library
      • Gauß-IT-Zentrum
      • Professional and Personnel Development
      • International House
      • The Project House of the TU Braunschweig
      • Transfer Service
      • University Sports Center
      • Facilities from A to Z
    • Equal Opportunity Office
      • Equal Opportunity Office
      • Family
      • Diversity for Students
  • Search
  • Quicklinks
    • People Search
    • Webmail
    • cloud.TU Braunschweig
    • Messenger
    • Cafeteria
    • Courses
    • Stud.IP
    • Library Catalogue
    • IT Services
    • Information Portal (employees)
    • Link Collection
    • DE
    • EN
    • Instagram
    • YouTube
    • LinkedIn
    • Mastodon
    • Bluesky
Menu
  • Organisation
  • Faculties
  • Carl-Friedrich-Gauß-Fakultät
  • Institutes
Logo Institut für Anwendungssicherheit der TU Braunschweig
Institute for Application Security
  • Institute for Application Security
    • Team
    • Publications
    • Projects
    • Teaching
    • Rent a Laptop
    • Contact
    • CVEs and Media
    • LegoLab

Institute for Application Security

Ansicht IAS

We at the Institute of Application Security are interested in the broad spectrum of security and privacy that exist on the application level. 

This includes the detection of vulnerabilities in source code or protocols, identification of novel security issues, and the development of procedures and tools to prevent security vulnerabilities.

Our current research focus is on the topics of software security including web application security, honeypots, fuzzing, novel privacy securing measures, the design and evaluation of security relevant protocols.

News

31.10.2025

David @DATEV Coding Festival

David was an invited speaker at this year's DATEV coding festival, presenting on our work on detecting and preventing XSS vulnerabilities.

27.10.2025

Lehrpreis

The hacklab has won the 3rd place @ TU Braunschweig's teaching awards in the category Best Lab / Exercise ! 

13.10.2025

IAS @ CCS

Our papers on Attacks on Web Archives and on DOM Gadgets were presented at ACM CCS 2025 in Taipei! more...

October 2025

Google CTF finals in Mexico City

Bringing Hacking to the masses! Jannik won 2nd place at the Google CTF finals Hackceler8 in Mexico City as part of the international Zer0RocketWrecks team. The final combines Speedrunning and Capture the Flag competitions in an unique way.

29.09.2025

HyTrack @ SecTor 2025

Malte will present our work on HyTrack at SecTor / Black Hat Canada!

August 2025

IAS @ USENIX Security

HyTrack and our shared work on CVEs in academia, which won the Distinguished Paper Award, were presented at Usenix this year!

August 2025

IAS @ WOOT

Manuel presented his work at Usenix WOOT on CSV Formula Injection and Jannik an attack surface study of the extract PHP function, which won the best paper award!

August 2025

NSPW'25

Alex attended this year's New Security Paradigms Workshop in Aerzen (GER), where she acted as a local chair!

July 2025

Seclab'25 was a success

Our introductory hacking lab produced an unprecedented high number of passing hackers with a four-way tie of the first place solving all challenges. Congratulations, you earned it!

July 2025

3rd Place for IAS Project "Wir wissen wo dein Auto fährt"

IAS' team Wir wissen wo dein Auto fährt Zero supervised by Malte, showed that dTPMS sensors can be misused to track cars and won the 3rd place at the Young Software Developers Day. Congrats!

01.07.2025

PDF-Security Guest Lecture @ IAS

Vladislav Mladenov gave an awesome talk about PDF-Security in our Lab guest lecture series. PDFs are scary powerful after all.

June 2025

6th Charter of Trust Germany Meetup

We combined our guest lectures in our Lab courses with the Charter of Trust with an awesome talk from Janik Besendorf from Reporters without Borders, more...

June 2025

Alex @WISC'25

Alex attended CASA's workshop Women in Security and Cryptography where she talked about how local political changes may influence the Internet's security on a global scale. 

June 2025

IAS @ Elbsides 2025

The IAS was at Elbsides 2025, where Malte talked about our HyTrack findings, more...

May 2025

RSAC San Francisco 2025

Robin traveled to San Francisco to speak about Blind Cross-site Scripting research at RSAC more...

May 2025

Open Technology Fund

The Open Technology Fund published Alexandra's technical report about her research project in 2023 on state-level surveillance in Russias digital infrastructure! More...

April 2025

Dr. Simon Koch Thesis Defense

We are pleased to announce that Simon Koch has successfully defended his dissertation. more...

March 2025

Two Papers @ IEEE S&P 2025

We got two papers accepted at the S&P'25! The first work by David explores why developers struggle with building privacy-compliant implementations. The second work by Alex and Tobias Fiebig examines the influence of the mere claim of the use of PET's in a product.

March 2025

Ethical Review in CS in TUBS Magazine

The TUBS' Magazine published an article about Alexandra's recent publication, in which she is working with an interdisciplinary team to rethink the current structures of ethical review in Computer Science research.

March 2025

5th Charter of Trust Meetup Germany

Simon talks at 5th Cyber Security Meetup at TU Braunschweig more...

February 2025

RuhrSec 2025

Next stop RuhrSec, where David will present on HTML Sanitizer insecurity.

February 2025

Hacklab 24/25 concludes

Our hacking course Hacklab 24/25 was a success, more...

January 2025

New Tracking Technique "HyTrack"

In a new work to appear at USENIX Sec' 25, we discovered a powerful new tracking technique on Android devices we call HyTrack, read the paper here.

January 2025

Alex @NSPW'24

Alex' paper about rivising the Procedures of Ethical Reviewing in CS Research was finally published at New Security Paradigms Workshop! This is a fully interdisciplinary work by Sebastian Giessler (Research Ethics), Hendrik Erz (Analytical Sociology) and Tobias Fiebig (Internet Network Research).

December 2024

IAS @ 38C3

IAS meets Chaos: We attended this years 38C3 in Hamburg, more...

December 2024

Blackhat EU

David presented a briefing on HTML parsing differentials at Blackhat EU in London. more...

November 2024

SSRF at German OWASP Day 2024

Malte gave a talk about SSRF and Defenses at the German OWASP Day 2024.

September 2024

Best Practical Award at FOCI'24

Alex' collaborative work with Censored Planet on network responses to Russia's invasion of Ukraine won the Best Practical Award at FOCI'24! more...

August 2024

Distinguished Paper award at USENIX Security 2024

Robin and his co-authors won a Distinguished Paper Award at USENIX Security 2024, more... 

August 2024

IAS @ USENIX Security 2024

Robin and Malte presented their work on Blind XSS and SSRF Defenses at USENIX Security, more.... 

July 2024

Seclab 2024 Concludes

We celebrated the end of this year's Seclab, more..

July 2024

IAS @ PETS 2024

Next stop: Bristol. David and Robin are presenting their papers at the 24th Privacy Enhancing Technologies Symposium (PETS).

June 2024

Jiska Classen at Seclab

Jiska Classen visited the IAS to give a guest lecture in this year's iteration of the Seclab.

June 2024

IAS @ SplinterCon 2024

Alexandra and her student Anna Sack attended the SplinterCon'24 in Brussels in Belgium. During their stay, they also had a look inside the EU Parliament. More...

May 2024

IAS @ IEEE S&P

Martin and David attended IEEE Security & Privacy in San Francisco, USA to present our work on HTML parsing differentials, met some old friends and made new ones. More...

February 2024

Hacklab 2024 concludes

Our Hacklab course celebrated with Pizza and Mate, more…

April 2024

2nd Charter of Trust Meetup

Robin Kirchner presented his work on Blind-XSS at the 2nd CoT Meetup. more...

April 2024

Promotionspreis IT-Sicherheit 2024 Finalist

Sebastian Lekias is among the final four for the CAST/GI Promotionspreis IT-Sicherheit 2024 with his dissertation Client-Side Cross-Site Scripting : Exploitation, Detection, Mitigation, and Prevention. Congratulations!

March 2024

Winterkongress 2024

Malte Wessels gave an introductory talk on SSRF at Winterkongress 2024, more…

March 2024

MADWEB Distinguished Presentation Award

Simon won the "Distinguished Presentation Award" at MADWEB '24 for our work on assessing importance metrics for open source projects. Congratulations!

January 2024

IAS CTF @ TDI

We hosted a fun CTF for 11th and 12th grade school students at the "Tag der Informatik". Learn how many young security hackers cracked our challenges, here.

January 2024

Jan Niklas Drescher joins IAS

A new year brings a new colleague: Jan Niklas Drescher joins us as PhD candidate!

Photo credits on this page

For All Visitors

Vacancies of TU Braunschweig
Career Service' Job Exchange 
Merchandising

For Students

Term Dates
Courses
Degree Programmes
Information for Freshman
TUCard

Internal Tools

Glossary (GER-EN)
Change your Personal Data

Contact

Technische Universität Braunschweig
Universitätsplatz 2
38106 Braunschweig

P. O. Box: 38092 Braunschweig
GERMANY

Phone: +49 (0) 531 391-0

Getting here

© Technische Universität Braunschweig
Legal Notice Privacy Accessibility

TU Braunschweig uses the software Matomo for anonymised web analysis. The data serve to optimise the web offer.
You can find more information in our data protection declaration.