VLDB 2026 Research / reviewers in the wild / expert
Dominik Herrmann
dblp:37/5937
· DBLP profile ↗
24ranked-venue papers
6as first author
8since 2021 · last 2026
0000-0002-7374-3054ORCID · verified
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 23 · 6 first-author · 8 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2026 | "I believe it's incredibly difficult to fight against this flood of spam": Towards enhancing strategies for creating effective vulnerability notificationsabstractIdentifying the most effective and scalable methods for notifying website owners about compromises or vulnerabilities remains an enduring challenge. Although some success factors have been identified, results regarding effective senders and notification framing are often inconsistent, and the understanding of how recipients perceive vulnerability notifications is still limited. Heading towards a better understanding, we conducted a 3 × 3 randomized controlled notification experiment, examining the impact of three distinct senders and three variations of notification framings for n = 581 compromised German websites. Our findings revealed a promising trend: receiving any notification significantly increased remediation compared to the absence of one. Remarkably, the choice of sender and framing played only a minor role in our notification experiment, which underscores the importance of notifying compromised websites and should motivate those who find vulnerabilities to take action. Yet, despite these encouraging results, a staggering 58% of the notified websites failed to remediate. To delve deeper into this phenomenon, we conducted follow-up interviews with 42 website owners who did not remediate their websites. The insights were revealing: while our notifications were delivered, many interviewees admitted they either overlooked or dismissed them as spam. This pattern persisted across different senders and framings, highlighting a critical challenge for future notification campaigns. Moving forward, future research should focus on finding ways to cut through the overwhelming amount of daily “spam” and explore strategies for how notifications can effectively convey their importance in recipients’ inboxes. Exploring strategies to raise the general awareness for cybersecurity, encouraging website owners to provide a security.txt, or providing additional assistance in the form of a self-service tool, are some proposals to increase remediation rates. We further recommend that future work should consider theories from communication science or psychology, e.g., Protection Motivation Theory (PMT) or the Elaboration-Likelihood Model, when designing notification campaigns. Anne Hennig, Maxime Veit, Leoni Schmidt-Enke, Fabian Neusser, Dominik Herrmann, Peter Mayer 0001 |
Comput. Secur. | 5 |
| 2024 | Is Personalization Worth It? Notifying Blogs about a Privacy Issue Resulting from Poorly Implemented Consent BannersabstractSeveral websites integrate trackers without users’ consent. Previous research studied whether notifying responsible website operators about such issues is an effective measure, often with limited success. Insights from marketing research suggest that personalizing notification emails may be an effective means to improve remediation rates, with previous research pointing in both directions. We studied this approach using a sample of 119 German fitness and sports blogs employing Google Analytics (GA) without user consent: In a first step, we compare the fix rate of blog operators that received a personalized notification tailored to their blog with the fix rate of operators that received a generic notification. We find that personalized notifications do neither increase remediation rate nor operators’ response behavior. In a second step, we analyzed the reasons not to fix mentioned in (A) the email responses and (B) a survey sent to the blog operators. We find that they mostly center around (I) denial that a data leak exists, (II) a lack of resources to remedy the issue and (III) claims of specifically requiring GA. We hypothesize that an additional reason not to fix could be the so-called moral credentials phenomenon and sketch how to study that in future work. Theresa Kriecherbauer, Richard Schwank, Adrian Krauss, Konstantin Neureither, Lian Remme, Melanie Volkamer, Dominik Herrmann |
ARES | 7 |
| 2023 | Cookiescanner: An Automated Tool for Detecting and Evaluating GDPR Consent Notices on WebsitesabstractThe enforcement of the GDPR led to the widespread adoption of consent notices, colloquially known as cookie banners. Studies have shown that many website operators do not comply with the law and track users prior to any interaction with the consent notice, or attempt to trick users into giving consent through dark patterns. Previous research has relied on manually curated filter lists or automated detection methods limited to a subset of websites, making research on GDPR compliance of consent notices tedious or limited. We present cookiescanner, an automated scanning tool that detects and extracts consent notices via various methods and checks if they offer a decline option or use color diversion. We evaluated cookiescanner on a random sample of the top 10,000 websites listed by Tranco. We found that manually curated filter lists have the highest precision but recall fewer consent notices than our keyword-based methods. Our BERT model achieves high precision for English notices, which is in line with previous work, but suffers from low recall due to insufficient candidate extraction. While the automated detection of decline options proved to be challenging due to the dynamic nature of many sites, detecting instances of different colors of the buttons was successful in most cases. Besides systematically evaluating our various detection techniques, we have manually annotated 1,000 websites to provide a ground-truth baseline, which has not existed previously. Furthermore, we release our code and the annotated dataset in the interest of reproducibility and repeatability. Ralf Gundelach, Dominik Herrmann |
ARES | 2 |
| 2023 | How Website Owners Face Privacy Issues: Thematic Analysis of Responses from a Covert Notification Study Reveals Diverse Circumstances and ChallengesabstractMany websites contain services from third parties. Misconfigurations of these services can lead to missing compliance with legal obligations and privacy risks for website users. Previous research indicates that one cause for such privacy issues is missing awareness. However, reasons for the missing awareness and other reasons for the prevalence of privacy issues are not widely researched; that includes website owners’ dealing with those issues. To shed light on the issue, we analyze 1043 responses from website owners to a notification about a privacy issue on their website using thematic analysis, following an exploratory and qualitative approach. Our analysis shows that, next to unawareness of the issue, incorrect technical implementation and ambiguous responsibilities are among the reasons for privacy issues. Also, website owners face different challenges, such as a lack of knowledge or slow organizational coordination and processes. In addition, our results show that the circumstances in which they operate their website influences how they act and what challenges they face. To illustrate these differences in website owners, we derive three personas from our thematic analysis: (1) the Ignorant Hobbyist, (2) the Busy Self-Employed, and (3) the Informed Multi-Stakeholder. These personas cover the majority of the aspects of the analyzed responses and represent the diversity of website owners and their backgrounds. Given the challenges and backgrounds of website owners, we discuss which prerequisites must be fulfilled to remediate privacy issues on websites. Finally, we present measures that support website owners in remediating privacy issues and show how to adapt these measures to the needs of different website owners. We hope that better support for website owners will also lead to better privacy for website visitors. Alina Stöver, Nina Gerber, Henning Pridöhl, Max Maaß, Sebastian Bretthauer, Indra Spiecker genannt Döhmann, Matthias Hollick, Dominik Herrmann |
Proc. Priv. Enhancing Technol. | 8 |
| 2021 | Best Practices for Notification Studiesfor Security and Privacy Issues on the InternetabstractResearchers help operators of vulnerable and non-compliant internet services by individually notifying them about security and privacy issues uncovered in their research. To improve efficiency and effectiveness of such efforts, dedicated notification studies are imperative. As of today, there is no comprehensive documentation of pitfalls and best practices for conducting such notification studies, which limits validity of results and impedes reproducibility. Drawing on our experience with such studies and guidance from related work, we present a set of guidelines and practical recommendations, including initial data collection, sending of notifications, interacting with the recipients, and publishing the results. We note that future studies can especially benefit from extensive planning and automation of crucial processes, i. e., activities that take place well before the first notifications are sent. Max Maaß, Henning Pridöhl, Dominik Herrmann, Matthias Hollick |
ARES | 3 |
| 2021 | How Private is Android's Private DNS Setting? Identifying Apps by Encrypted DNS TrafficabstractDNS over TLS (DoT) and DNS over HTTPS (DoH) promise to improve privacy and security of DNS by encrypting DNS messages, especially when messages are padded to a uniform size. Firstly, to demonstrate the limitations of recommended padding approaches, we present Segram, a novel app fingerprinting attack that allows adversaries to infer which mobile apps are executed on a device. Secondly, we record traffic traces of 118 Android apps using 10 differnet DoT/DoH resolvers to study the effectiveness of Segram under different conditions. According to our results, Segram identifies apps with accuracies of up to 72 % with padding in a controlled closed world setting. The effectiveness of Segram is comparable with state-of-the-art techniques but Segram requires less computational effort. We release our datasets and code. Thirdly, we study the prevalence of padding among privacy-focused DoT/DoH resolvers, finding that up to 81 % of our sample fail to enable padding. Our results suggest that recommended padding approaches are less effective than expected and that resolver operators are not sufficiently aware about this feature. Michael Mühlhauser, Henning Pridöhl, Dominik Herrmann |
ARES | 3 |
| 2021 | The AppChk Crowd-Sourcing Platform: Which Third Parties are iOS Apps Talking To?
Oleg Geier, Dominik Herrmann |
SEC | 2 |
| 2021 | Effective Notification Campaigns on the Web: A Matter of Trust, Framing, and Support
Max Maaß, Alina Stöver, Henning Pridöhl, Sebastian Bretthauer, Dominik Herrmann, Matthias Hollick, Indra Spiecker genannt Döhmann |
USENIX Security Symposium | 5 |
| 2020 | How do app vendors respond to subject access requests?: a longitudinal privacy study on iOS and Android AppsabstractEU data protection laws grant consumers the right to access the personal data that companies hold about them. In a first-of-its-kind longitudinal study, we examine how service providers have complied with subject access requests over four years. In three iterations between 2015 and 2019, we sent subject access requests to vendors of 225 mobile apps popular in Germany. Throughout the iterations, 19 to 26% of the vendors were unreachable or did not reply at all. Our subject access requests were fulfilled in 15 to 53% of the cases, with an unexpected decline between the GDPR enforcement date and the end of our study. The remaining responses exhibit a long list of shortcomings, including severe violations of information security and data protection principles. Some responses even contained deceptive and misleading statements (7 to 13%). Further, 9% of the apps were discontinued and 27% of the user accounts vanished during our study, mostly without proper notification about the consequences for our personal data. While we observe improvements for selected aspects over time, the results indicate that subject access request handling will be unsatisfactory as long as vendors accept such requests via email and process them manually. Jacob Leon Kröger, Jens Lindemann 0001, Dominik Herrmann |
ARES | 3 |
| 2017 | Editorial: 30th IFIP International Information Security Conference (IFIP SEC 2015)
Dominik Herrmann, Hannes Federrath |
Comput. Secur. | 1 |
| 2016 | Behavior-based tracking of Internet users with semi-supervised learningabstractBehavior-based tracking is an unobtrusive technique that allows observers on the Internet to monitor user activities over long periods of time - in spite of changing IP addresses. Our technique uses semi-supervised machine learning, which allows observers to track users without the need for multiple labeled training sessions. We present evaluation results obtained on a realistic dataset that contains the DNS traffic of 3,800 users. Given the traffic of one week, our simulated observers can link the sessions of up to 87% of the users with surprisingly little effort. Our results indicate that observers can leverage unlabeled sessions to increase the robustness of existing tracking techniques. This makes it more difficult for users to protect their privacy on the Internet. Dominik Herrmann, Matthias Kirchler, Jens Lindemann 0001, Marius Kloft |
PST | 1 |
| 2015 | Workload modelling for mix-based anonymity services
Karl-Peter Fuchs, Dominik Herrmann, Hannes Federrath |
Comput. Secur. | 2 |
| 2015 | Laribus: privacy-preserving detection of fake SSL certificates with a social P2P notary networkabstractIn this paper we present Laribus, a peer-to-peer network designed to detect local man-in-the-middle attacks against secure socket layer/transport layer security (SSL/TLS). With Laribus, clients can validate the authenticity of a certificate presented to them by retrieving it from different vantage points on the network. Unlike previous solutions, clients do not have to trust a central notary service nor do they have to rely on the cooperation of website owners. The Laribus network is based on a social network graph, which allows users to form notary groups that improve both privacy and availability. It integrates several well-known techniques, such as secret sharing, ring signatures, layered encryption, range queries, and a distributed hash table (DHT), to achieve privacy-aware queries, scalability, and decentralization. We present the design and core components of Laribus, discuss its security properties, and also provide results from a simulation-based feasibility study. Karl-Peter Fuchs, Dominik Herrmann, Andrea Micheloni, Hannes Federrath |
EURASIP J. Inf. Secur. | 2 |
| 2014 | EncDNS: A Lightweight Privacy-Preserving Name Resolution Service
Dominik Herrmann, Karl-Peter Fuchs, Jens Lindemann 0001, Hannes Federrath |
ESORICS (1) | 1 |
| 2014 | Evaluating the Security of a DNS Query Obfuscation Scheme for Private Web Surfing
Dominik Herrmann, Max Maaß, Hannes Federrath |
SEC | 1 |
| 2014 | PADAVAN: Privacy-Aware Data Accumulation for Vehicular Ad-hoc NetworksabstractIn this paper we introduce PADAVAN, a novel anonymous data collection scheme for Vehicular Ad Hoc Networks (VANETs). PADAVAN allows users to submit data anonymously to a data consumer while preventing adversaries from submitting large amounts of bogus data. PADAVAN is comprised of an n-times anonymous authentication scheme, mix cascades and various principles to protect the privacy of the submitted data itself. Furthermore, we evaluate the effectiveness of limiting an adversary to a fixed amount of messages. Andreas Tomandl, Dominik Herrmann, Hannes Federrath |
WiMob | 2 |
| 2013 | Laribus: Privacy-Preserving Detection of Fake SSL Certificates with a Social P2P Notary NetworkabstractIn this paper we present Laribus, a peer-to-peer network designed to detect local man-in-the-middle attacks against SSL/TLS. With Laribus clients can validate the authenticity of a certificate presented to them by retrieving it from different vantage points on the network. Unlike previous solutions, clients do not have to trust a central notary service, nor do they have to rely on the cooperation of website owners. The Laribus network is based on a Social Network graph, which allows users to form Notary Groups that improve both privacy and availability. It integrates several well-known techniques, such as secret sharing, ring signatures, layered encryption, range queries and a Distributed Hash Table (DHT), to achieve privacy-aware queries, scalability and decentralization. We present the design and core components of Laribus, discuss its security properties and also provide results from a simulation-based feasibility study. Andrea Micheloni, Karl-Peter Fuchs, Dominik Herrmann, Hannes Federrath |
ARES | 3 |
| 2013 | Generating Realistic Application Workloads for Mix-Based Systems for Controllable, Repeatable and Usable Experimentation
Karl-Peter Fuchs, Dominik Herrmann, Hannes Federrath |
SEC | 2 |
| 2013 | Behavior-based tracking: Exploiting characteristic patterns in DNS traffic
Dominik Herrmann, Christian Banse, Hannes Federrath |
Comput. Secur. | 1 |
| 2012 | Introducing the gMix Open Source Framework for Mix Implementations
Karl-Peter Fuchs, Dominik Herrmann, Hannes Federrath |
ESORICS | 2 |
| 2012 | Tracking Users on the Internet with Behavioral Patterns: Evaluation of Its Practical Feasibility
Christian Banse, Dominik Herrmann, Hannes Federrath |
SEC | 2 |
| 2011 | Privacy-Preserving DNS: Analysis of Broadcast, Range Queries and Mix-Based Protection Methods
Hannes Federrath, Karl-Peter Fuchs, Dominik Herrmann, Christopher Piosecny |
ESORICS | 3 |
| 2009 | A Privacy-Preserving Platform for User-Centric Quantitative Benchmarking
Dominik Herrmann, Florian Scheuer, Philipp Feustel, Thomas Nowey, Hannes Federrath |
TrustBus | 1 |
| 2007 | Performance Comparison of Low-Latency Anonymisation Services from a User Perspective
Rolf Wendolsky, Dominik Herrmann, Hannes Federrath |
Privacy Enhancing Technologies | 2 |