- Publications
- Influence
Claim Your Author Page
Ensure your research is discoverable on Semantic Scholar. Claiming your author page allows you to personalize the information displayed and manage publications.
- Ben Stock, Jan Göbel, Markus Engelberth, Felix C. Freiling, Thorsten Holz
- European Conference on Computer Network Defense
- 2009
A botnet is a network of compromised machines under the control of an attacker. Botnets are the driving force behind several misuses on the Internet, for example spam mails or automated identity… (More)
- Sebastian Lekies, Ben Stock, Martin Johns
- CCS '13
- 2013
In recent years, the Web witnessed a move towards sophis- ticated client-side functionality. This shift caused a signifi- cant increase in complexity of deployed JavaScript code and thus, a… (More)
- Ben Stock, Sebastian Lekies, Tobias Mueller, Patrick Spiegel, Martin Johns
- USENIX Security Symposium
- 2014
The current generation of client-side Cross-Site Scripting filters rely on string comparison to detect request values that are reflected in the corresponding response's HTML. This coarse… (More)
- Ben Stock, Giancarlo Pellegrino, Christian Rossow, Martin Johns, Michael Backes
- USENIX Security Symposium
- 2016
Large-scale discovery of thousands of vulnerable Web sites has become a frequent event, thanks to recent advances in security research and the rise in maturity of Internet-wide scanning tools. The… (More)
- Sebastian Lekies, Ben Stock, Martin Wentzel, Martin Johns
- USENIX Security Symposium
- 2015
Modern Web sites frequently generate JavaScript on-the-fly via server-side scripting, incorporating personalized user data in the process. In general, cross-domain access to such sensitive resources… (More)
- Ben Stock, Martin Johns
- ASIA CCS '14
- 2014
To ease the burden of repeated password authentication on multiple sites, modern Web browsers provide password managers, which offer to automatically complete password fields on Web pages, after the… (More)
- Ben Stock, Stephan Pfistner, Bernd Kaiser, Sebastian Lekies, Martin Johns
- CCS '15
- 2015
Although studies have shown that at least one in ten Web pages contains a client-side XSS vulnerability, the prevalent causes for this class of Cross-Site Scripting have not been studied in depth.… (More)
After treating the notification of affected parties as mere side-notes in research, our community has recently put more focus on how vulnerability disclosure can be conducted at scale. The first… (More)
- Martin Johns, Sebastian Lekies, Ben Stock
- USENIX Security Symposium
- 2013
The Web's principal security policy is the Same-Origin Policy (SOP), which enforces origin-based isolation of mutually distrusting Web applications. Since the early days, the SOP was repeatedly… (More)
- Michael Backes, Konrad Rieck, Malte Skoruppa, Ben Stock, Fabian Yamaguchi
- IEEE European Symposium on Security and Privacy…
- 2017
The Web today is a growing universe of pages and applications teeming with interactive content. The security of such applications is of the utmost importance, as exploits can have a devastating… (More)