Past BSc and MSc Theses in our Group

BSc Theses

YearStudentTitle
2018Jonas CirotzkiA new graph-based approach to SELinux policy evaluation
Jannik PfeiferAnalysis and Classification of Android Runtime Permission Requests
2019Antoine ScheffoldEvaluating distributed application programming on Android
Christian ThielStudying the acceptance of WebAuthn on mobile devices
Johannes WockerTrusted Platform Module Software Stack Implementation in Android
2020Julian GroherDeveloper-User contracts by enhancing Android’s permission dialogues
Marvin MoogEvaluating Adoption and Obstacles of NSC in Android
David SchäferSystem Support for Attesting Apps to Services
2021Nicolas MüllerApp Piracy in Android
Florian NawrathAlready logged in or still looking for your password? Quantitative testing of the users FIDO2 client support
Marco SchichtelBiometric Authentication in FIDO2 with TPM Authenticators
John SchmittImplementing Certificate Transparency Inside Android Open Source Project
2022Mirko MeinerzagHardening Android’s Task Management to Prevent Phishing
Christoph SteuerSeamless installation of trustlets with third-party applications in Android
2023Abdulla Imad MalallahExploring API behavior in Android applications using Word2Vec
2024Andreas KnobelUsing Program Forward Slices for Indexing Code Snippets
Parthipan RameshAutoomated Identification of Protected Resources in Android System Services
Justus SparenbergDetecting, Categorizing & Evaluating App Permission Rationales
Luk StamannMessage-o-matic: A Decision Support Tool for Secure Messaging Applications
Christina SubediNetwork Security in Android Applications: URL-based Measurement Study
Robin WiesenSelective Permissions for Android’s SDK Runtime
2025Tobias GaulContext switching instructions for RISC-V

MSc Theses

YearStudentTitle
2017Yusra ElbitarAllow or Deny? A Usability Study on Android’s Permission Dialogs
2018Muhammad Hammad AkhtarOpen Portable Trusted Execution Environment in Android
Wadah Sharaf Al-HamadiExtending LibScout for better obfuscation resilience and accuracy
Patrick BenderDetecting Semantic Code Changes in Java Bytecode with Grey-box Fuzzing
Abdallah DawoudOS Support for Capabilities in Android
Turbat GanboldChatbot based information security risk assessment platform
Lukas LöhleThe password experience across devices: A comparative study
Vincent OgwaraGDPR Compliance: Data Protection by Design and by Default
2019Ali RaeesCTAP Wrapper for Mobile TPM
2020Aftab AlamStudying and Improving WebAuthn Usability
Felix FeltenPrivileging Isolated Services on Android
2022Jonas CirotzkiFuchsia – What is it capable of?
Joshua SteffenskyFIDO2 inside: Unifying digital and physical authentication
2023Noah MautheAre you confused Fuchsia? Detecting deputies in Google’s Fuchsia OS
Nils OlzeFinding the Needle in the Haystack: Password Recovery in a Forensic Setting
2025Muhammad Abdul MueedSystematic Analysis of Web Content Display Mechanisms: WebView, CustomTabs, and Trusted Web Activity
Jonas BirtelDetection of Deprecated & Insecure StackOverflow Code Snippets in Leading Android Applications
Florian NawrathPushed, Guided, or Left Alone: Investigating the Influence of Passkey Enrollment Strategies on Acceptance