Research Papers & Reports

Repository of my academic and industry publications.



All 2016 2015 2014 2013 2012 2011 2010 2009 2008 2006 2004

Authors and coauthors 2008:

Bernhard Plattner (1), Bernhard Tellenbach (1), Gunter Ollmann (1), Martin May (2), Stefan Frei (3), Thomas Duebendorfer (1)

Understanding The Web Browser Threat

Stefan Frei, Thomas Duebendorfer, Gunter Ollmann, Martin May
If you were to "hack the planet" how many hosts do you think you could compromise through a single vulnerable application technology? A million? A hundred-million? A billion? What kind of application is so ubiquitous that it would enable someone to launch a planet-wide attack? - why, the Web browser ..

August 10, 2008, DEFCON 16
Download Paper


Putting Private And Government CERT’s To The Test

Stefan Frei, Martin May
In an independent research project at ETH Zurich, we monitored for more than 18 months the world’s top security advisory providers. Due to a short 30-minute monitoring interval, we discovered significant differences in quality, quantity, and timeliness.

June 28, 2008, FIRST Conference, Vancouver, 2008
Download Paper


0-Day Patch - Exposing Vendors (In)security Performance

Stefan Frei, Bernhard Tellenbach, Bernhard Plattner
We introduce the 0-day patch rate as a new metric to measure and compare the performance of the vulnerability handling and patch development processes of major software vendors. We use this metric to analyze the performance of Microsoft and Apple over the past six years.

March 27, 2008, BLACKHAT Europe 2008
Download Paper




Date Time: 2019-08-24 11:36:42
Recent Papers
Recent Press Coverage
© 2000-2019 Stefan Frei