Kontakt
Universitaetsstrasse 38
70569 Stuttgart
Germany
Raum: 2.434
2026
- Pedram Hosseyni, Ralf Küsters, and Tim Würtele, “Audience Injection Attacks: A New Class of Attacks on Web-Based Authorization and Authentication Standards,” in 47th IEEE Symposium on Security and Privacy (S&P 2026), 2026, pp. 205–222. To appear.
2025
- Tim Würtele, “Mechanized Modeling and Security Proofs for Web Protocols,” PhD Thesis, University of Stuttgart, Ph.D. Thesis, 2025.
- Pedram Hosseyni, Ralf Küsters, and Tim Würtele, “Audience Injection Attacks: A New Class of Attacks on Web-Based Authorization and Authentication Standards,” Cryptology ePrint Archive, Technical Report 2025/629, 2025.
2024
- Pedram Hosseyni, Ralf Küsters, and Tim Würtele, “Formal Security Analysis of the OpenID FAPI 2.0 Family of Protocols: Accompanying a Standardization Process,” Cryptology ePrint Archive, Technical Report 2024/1540, 2024.
- Pedram Hosseyni, Ralf Küsters, and Tim Würtele, “Formal Security Analysis of the OpenID FAPI 2.0 Family of Protocols: Accompanying a Standardization Process,” ACM Transactions on Privacy and Security, vol. 28, pp. 1–36, 2024.
- Pedram Hosseyni, Ralf Küsters, and Tim Würtele, “Formal Security Analysis of the OpenID FAPI 2.0: Accompanying a Standardization Process,” Cryptology ePrint Archive, Technical Report 2024/078, 2024.
- Pedram Hosseyni, Ralf Küsters, and Tim Würtele, “Formal Security Analysis of the OpenID FAPI 2.0: Accompanying a Standardization Process,” in 37th IEEE Computer Security Foundations Symposium (CSF 2024), 2024, pp. 589–604.
2023
- Florian Helmschmidt, Pedram Hosseyni, Ralf Küsters, Klaas Pruiksma, Clara Waldmann, and Tim Würtele, “The Grant Negotiation and Authorization Protocol: Attacking, Fixing, and Verifying an Emerging Standard,” in 28th European Symposium on Research in Computer Security (ESORICS 2023), 2023, vol. 14346, pp. 222–242.
- Florian Helmschmidt, Pedram Hosseyni, Ralf Küsters, Klaas Pruiksma, Clara Waldmann, and Tim Würtele, “The Grant Negotiation and Authorization Protocol: Attacking, Fixing, and Verifying an Emerging Standard,” Cryptology ePrint Archive, Technical Report 2023/1325, 2023.
- Karthikeyan Bhargavan, Abhishek Bichhawat, Pedram Hosseyni, Ralf Küsters, Klaas Pruiksma, Guido Schmitz, Clara Waldmann, and Tim Würtele, “Layered Symbolic Security Analysis in DY*,” in 28th European Symposium on Research in Computer Security (ESORICS 2023), 2023, vol. 14346, pp. 3–21.
- Karthikeyan Bhargavan, Abhishek Bichhawat, Pedram Hosseyni, Ralf Küsters, Klaas Pruiksma, Guido Schmitz, Clara Waldmann, and Tim Würtele, “Layered Symbolic Security Analysis in DY*,” Cryptology ePrint Archive, Technical Report 2023/1329, 2023.
2022
- Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz, Nils Wenzler, and Tim Würtele, “A Formal Security Analysis of the W3C Web Payment APIs: Attacks and Verification,” in 43rd IEEE Symposium on Security and Privacy (S&P 2022), 2022, pp. 134–153.
2021
- Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz, and Tim Würtele, “An In-Depth Symbolic Security Analysis of the ACME Standard,” Cryptology ePrint Archive, Technical Report 2021/1457, 2021.
- Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz, and Tim Würtele, “A Tutorial-Style Introduction to DY*,” in Protocols, Strands, and Logic: Essays Dedicated to Joshua Guttman on the Occasion of His 66.66 Birthday., vol. 13066, D. Dougherty, J. Meseguer, S. A. Mödersheim, and P. Rowe, Eds. Springer, 2021, pp. 77–97.
- Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz, Nils Wenzler, and Tim Würtele, “A Formal Security Analysis of the W3C Web Payment APIs: Attacks and Verification,” Cryptology ePrint Archive, Technical Report 2021/1012, 2021.
- Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz, and Tim Würtele, “An In-Depth Symbolic Security Analysis of the ACME Standard,” in ACM Conference on Computer and Communications Security (CCS 2021), 2021, pp. 2601–2617. .
- Karthikeyan Bhargavan, Abhishek Bichhawat, Quoc Huy Do, Pedram Hosseyni, Ralf Küsters, Guido Schmitz, and Tim Würtele, “DY*: A Modular Symbolic Verification Framework for Executable Cryptographic Protocol Code,” in IEEE European Symposium on Security and Privacy (EuroS&P 2021), 2021, pp. 523–542.
2016
- Tilman Dingler, Corinna Giebler, Ulf Kunze, Tim Würtele, Niels Henze, and Albrecht Schmidt, “Memory displays: investigating the effects of learning in the periphery,” in Proceedings of the 5th ACM International Symposium on Pervasive Displays, PerDis 2016, Oulu, Finland, June 20 - 22, 2016, 2016, pp. 118–123.
-----BEGIN PGP PUBLIC KEY BLOCK----- xsFNBF0u4tYBEACjIH1nnCBd8lZiZtJ0UBWpJJzKmOaiJdv268jkdt20EdrzoAjm lvIZuOWh16J8fkMLy3/Msehgd9RI+P0fmDa4AIp0slpAhLfAAqMjQWjx4SUnYdmO O8FI6XCSDb1vNGuhXOhNHIZAG0D8OHiQGZDC9GYYL/ZBe7WOMJvfqpoy2kvfX2xc 3jWsNSzr/Kpl2UL/CvpyVP4SWq4RKjy+xEWcHrWYKpjPbvTcftB/f6wqop257aGG U3PgEsP2QUgQv9pTJLeClWwzlrQ0CAcOpuIR8YnF1fNvkpPimslrIQH5M4tc/ucz wXgwSLFDdkW7pUVxokRblCXDOm+17g2OEotqN4h9LEcUEkpLe57RVVU/HuONCUZn FktqmR7Ld2ZRdOMytirS21Zou61GXDAjdwW2EU1fv1vVI1Bk8J+fAht0HwHcT/hR cpD5orDAXYwlpYqQmUL4i5fj2tSAR8YO8oNBhBZhm3O3iWD8sp9QMWPktD1rEJb5 EdW8aRi/g22QqG91NG2+apSCUIwxJ1g+XCJDB7zU5Mrs4ScBstaHI4cmGLXIgcMZ m24lrEkN/Tj/KiDyslWQfKziTNAc2i3hNZPoP+h2ykE0QWRTzN3RRSNjC82Kpcgb BRkGBVCYhVUMBHFG1dyn6c/bfiojO35xynpZmvt29dRwdksGJAu+A5bNfwARAQAB zTBUaW0gV8O8cnRlbGUgPHRpbS53dWVydGVsZUBzZWMudW5pLXN0dXR0Z2FydC5k ZT7CwZQEEwEIAD4WIQRglwh7cst2TwXzN+i+Pjz9/xP60QUCaaWKTQIbIwUJFd01 GgULCQgHAgYVCgkICwIEFgIDAQIeAQIXgAAKCRC+Pjz9/xP60UVsEACEQ1OjWy10 0MIJ3WhDDpX35jXdtgpcAQ+95dyyduKNLu4hKcmnm6i3ErlRWB9nzKT353yP4Ze/ NDxr8xFCBwIbjfauUEkDY9OHBF4d+NV47DMgk5tbDIj04uw4AuBYxJmfSb2w05m8 G9o1QH/s+S7YxCYEQbzhRX+SRssM27dHqNYx0/UKhqLWl4c4dbTjPQIAqNpyqQlq LGtBNL2mFHpyOBq/5Qh25jcBz0o8YvZCI+Ica8pfi4UwyOxK3lxMSjwRPPNR5ceX FxXQOd7wPzVmNZge7kZW+YkSd29RNJU4At8xUdA5o945fuV20M4iy5e3sqVkNc74 DIV2FAq+Br6CrvwceklMOa4KLNV9QO1Qi2nSoQvX2xhuB0U54yQaI5AemsiwDRbR VS4Oe2hqObxFcbRCSOEyz6MWoQBAiSz756/XVsb2aDwW9sQVNll+e3r9UaWr7mgi MKghG3sayd3CM1a9jzjQB1mHCtsi1TrPGYEaMVFYfbP1ddJWCH442EnS4O6FWTEY TvEVaQeTb2UYcYXPbaCztN27gSmPImqOvvUjEnkyfoWxtQDMJy+XQSBMUwkGjBvO MFXH3btJQLj2gySocme6FfDOpB488i36ztCtaYqoCw9wftX+WxVf5loqNZPwsgq2 VynsGNn27vSP3hn8mvFT1hB4y3KEHVF9W8LBlAQTAQgAPhYhBGCXCHtyy3ZPBfM3 6L4+PP3/E/rRBQJdLuLWAhsjBQkJZgGABQsJCAcCBhUKCQgLAgQWAgMBAh4BAheA AAoJEL4+PP3/E/rReUAQAJQrmr3WzXrvb5nzWQT1g+Mr9W3Nd0YyCqKSSS2W5yra ZNqFilwyx67d5ihWRA7eF9+EkkptnKZxeAtDxAtKuKdQ4qwqzalnHoNItt5B8wD+ U/2R25SfyIqcqpNkk1V6uEjyqF7Q4qKd4PhBcSOAb6lBRMLX+5CWds59Ksun1m3c t356DnbnMzA88vtyP6c7U3tXRshAlsfJe2oqy8lyBJiZppKYTFTrCmtHtEko0b9M B9YtJCwdy+6Td+HaVGKVmPEan0KzUWWx1X9hNtfF4UVIuiWMy/uIcWqQrpTlC6Cj QQ6E0/vcuAQTLS+Qb2HsZnBMuwZPQ87PFiEWRjF2oyFC8QbjQbEhWNOVWbishWjL b7+wujeyMHJWrbXFndWLQgzF/gKlSL6WacO/B+4617ni836kDOXQrU3jvSKgsgBd HtOF45S1p4jes1daen+AncDdGBmGHUsglmlAurv6e0oI/QkGjwAQjkrQ81reTB8o PJtHMsGkPy1Hua2MDGj4NBzaUSoBrHyXSLqIz2ohFdvEXgbCrBpqAmMRSXMR9vTz J1qux7G2ddoRLya6GIvAZ5wA9EH5emsjhjiT8DvmXzREmE8k9l5Y4SVwkcRMwYv7 hf72FTW+9gxlsMjl8mkCuJxjeXg2bFfsZG7WuegX2FrE+/ziZBT/V3pEXGD6d/aQ wsGUBBMBCAA+FiEEYJcIe3LLdk8F8zfovj48/f8T+tEFAmXhoQ8CGyMFCQx0kJoF CwkIBwIGFQoJCAsCBBYCAwECHgECF4AACgkQvj48/f8T+tGCFg//WSmX1OI0YJcO YXPSOwWCGekJhixD0vfg4qxbEQMSlvXzZOplk2l+agSgvxi95TEcmC2FgGW9j4ig x7Gmjf6ijVaw3UIMTisk9cc/5wCh7Tz8kpklN3YjveGQ/E+7ygcOlpFM2U4sOz+v wQxd+BbyfOCzYkQ2iZhyE5KBv0k5l8xV2fjgraK1oJOSZtc+dj+ezPv/aNYK5Ryb lcVzIXX9vdcp8bQvicylApEgAjq5G0QIgjAjfj2sG6CQKjHpV+tzvsS0fUNpoEPE zK95mBV37g01+HGbkjfoSUXxZ7QhSeYu/QzpLORyQuqOazD1axeLWpsQqTkcBlD8 mZhfvEXDGEtw09F7yAt2HwWo/c7xQ4s0jGoW/oGzYlC11B8AYbBiT5axr++E2HtF NpRoJ64xTxjgXdv+G3dxEJobywNb+zXc7o6FSE6Fl+OkmDOIXvJb1N+3P97KuCFI TopgWwDIOaOaGZ6KZxxhYitdIOJNqkxqnwilLKXPoony+LykMZBuNtRk4N9UNTdF mggu6O9jd4JxWLsP2nVmLN7d/iIHeyHNdeufSdS02MBIT8ej/LiJ7WdgKbbnAWlS 7WVJ5sUotFPIqJvuiaNPdxxSqo0CSpuId1NMHK2VTnq5obzVferT8BiH+3KNDeDq K9uCUADKXtHt1anUHPMtkftgl9VvNRHOwU0EXS7i1gEQANlCWTSQDfHf3grwmxyE PfFqtGY40/l+byq2dAj7a+qpCsU1bTP6c50QkC5XwQOwMO+d9OE5NJkMXI3OPGL6 5aMNBtb1gIgQBF6mNA0xdfVp61E1qJokGdsVwtPfb4mhKg+nTZsxJU1G0I0JLxT8 +1NGFPSR7E9/7XcJqEahlE/Ks8epRTV4rHDeoU68Zy71UpYGXC8O45OnFSKHv1O7 EvBT6kYagVtivvS4c9rzahoM1GR4ZPgArTk4qB0HolHPCP7W7c5iDkosdS35DaAU e3jUGTfpI+UT4SmZEW8Cs+z0//zdNYFgh79zHUyjBaTz9JkrwqfQIZzMaVDJtvTH RbF29VPgxT03q7LG1JbLFH3tqiT+P5ITr2Kzh9e4Ylj7fGsVCpaaEyAL7PWaBI/a yOfkXgp9SrctpKniGohgEpBl1ZlZg1Q4WEuSWho6UkQ7cizPeq2tdOgTq9tJBVo2 4ATzsxEJv2HblrrW2hNr5CPDc5uHeBEoMgjR2kir5uGB5Mc0Im9on5VmVd/rIgt0 rRZjUuouegynKUOS3bFKR5Gae5MNuwXhl8ls8OWNh4eKcR4PooDDRkcQWR5Kryif 5bq9ZN9NowR8ISTepuAUizYhD/1F2guOEbRCCmZhayrjZpFdCKkjv420vFRUcH+x muAhoFRUsToCnvbpchCZ8AHLABEBAAHCwXwEGAEIACYWIQRglwh7cst2TwXzN+i+ Pjz9/xP60QUCaaWKTQIbDAUJFd01GgAKCRC+Pjz9/xP60R9lD/9Mgr0IB5sAeJ5+ Q2XgMiV7S72LMDOBDH9i5rk21EoEsFXIvLi2PFr4+rCmjkBQd39y0+YP9/6/eckq 7kd/AHk7whUTFkcSl/ARNX9KMLnZosiyksw9Egzj/gPmYwR1RPrgtts10xXOTEmp mj2ojpYtph7V/lnEMOl7cICj9k3yYLC+75T00v2b64+1hoPo4g/PiSD3YjY0kCQi /89t/NjklPbc9vbs6PmNs6hvhBWj01vtl4s1fd8HeeNYPhnLWpjgyC7+GAvIhOHt z1FWsRMLMgqARFluhxe5MaAYb/jqK/2ggEXtY649q6QbPWf/cDTxtRqwuHFfSgV1 zaymkoE8lkh5gGp3IMnjZ5dTJynpi0MVUC8XudZWVGE94CqfMMi0qO6zjOCAdNxv r1y/Uv9vV8HhMQIT1NA8tTVIovXz/3S+HLy+51V0BT4YT0iSDmlCurTYi527nZ54 N/ynQa8cIswZpdDWvbMWzDk9F4yyW7c8oid4/WRoKPKBaB6KthZg8UCGfkPN1iOY 6gsHbkjD9OC/ORbW+tHinX72hZyzkRHSvUcOT0Dd1s54TFihch304Hvc7ZTKBSMt hlSi0orJre+B4UmcbgTBL86EsHfFhRmgHe91zSwtKcwgUPdXXVhCrd0moC0Z1Clc WTtJ7srCiR5mD1Ka6BJOpvi+S7LRaMLBfAQYAQgAJhYhBGCXCHtyy3ZPBfM36L4+ PP3/E/rRBQJdLuLWAhsMBQkJZgGAAAoJEL4+PP3/E/rR5x0P/ibZGFJLa1/g5PTU NkEb72zpGTIX5Qi3QELQ7yRSBaymUzeWGcNtuqVX4zNA5geX4r9rMc0p1kkQqCks ZHQueon47zt6AxdBA9csmOgkDUglYDZeyaxuJ70dMHL1Bu5mtWZ1ydULY2ntEjKx BUI7tUAwpdzDVmk8Kpl5StGv74Ac/m8xz/F8c/863mxr6GwCmQLPlTrkkuVGfzZm rTft10Zf7kZzoxXNzMwxfi62DT9dqUBnUCjv5POFFSydctXWjxZDdibpWSrQ1oPc dzu8+9KFgQ6Lk4eyBGFNn3JCOgtYKnCB613M2cOLQA5nt7/sCAAGle19giaYe+sv G3/pfzB601kuzFnNrZMXIyZ77GBdE982QUwZdCLgN3/3DTGgdyIRUIL2VYKgveEU lpRik3T7XkUXPAak29NPrbtNcTTQ2Kb6ZqPcnt5Cn7v6zBdkDLNw2AZTMdC2dty6 TgpyYVAUSN0PLxtwDafC7zQ054hCXstDO5L3w7UwMm/OdYyjiL8YecvNk8ZZsfiB zJ5QLsguJYO6l22v+wcueI7uIcoMkrCxzkM+8THHAWyDSs9BaYcU2XKC9jBT4X3N 2c4YdCCfJJqWQ50V5HY3LTvAZ2L9SftcyVWm7FhTeR6EkKvoA47ABMlm/y43yuXK JzFYtAZwSuyQNnWs6HSUzv281pv/wsF8BBgBCAAmFiEEYJcIe3LLdk8F8zfovj48 /f8T+tEFAmXhoQ8CGwwFCQx0kJoACgkQvj48/f8T+tFvQw//ZRgsUU1FunEbuUGD 0sR8t2Goqd4T83eJIEDjIClnaL9ULXzcOJONLycjLsRKHgAEunDwwoMK8pba4YHY 06T6xGUqDvg+m+OJDh9mgEtQE4sWVAsHrcCUXLJ7N5+7bvE/wjOGOklaPRf7hGh4 CLY8MomlhnFr+kMuIB7yavkxeJTWZ0pRJbucDQX/xNpE8qtkLF2WstUfFMt+JlR+ 0Hs8EW1QtxNkyBgCv9tEaLDZtW0xkMKrSO+Y2nunjSTOYYZ6COCq2INbxNotfXVk qdlBjqKTU7PCmuh9lC3TwNryw/GWqwFMzzvHYEOv/DSbRao8Hw9BOxdlv5HaKzRv PqjI/6gQv+EIA51+5igI4uuZXPsM5PF7Q72mpVupuVBuMNJwdIiTY12Nt/ju/muk 64jbMuHA7IyVA6VuI0DR1tLLKyhzUDOHT2f4Ilf5/S3KATK/GkEQgQU09hO3KLhZ 9ISb023zF+shhhFw52JWXlL/3GoO+wYVyh7FUvOBcerH3cuvrC8jZ136MT/I66ga +Mh/7pIiRC1STGNNoVPirk3bwn2/25/FBRkxZY3MN6ARTwSRUeSDy0l4TEe53bqi U6Cm1Agnw1QOO9daoaDY0EgWo8pTbcZZ//zYYy+Layni4CxIp7OkvOFz/5zdaerG xE3IKqSrN2NyFPJo2CzOOWNgx3g= =Hna1 -----END PGP PUBLIC KEY BLOCK-----
Umfangreichere Informationen finden Sie auf unserer englischsprachigen Seite.