Dr. rer. nat. Jan Pennekamp

Dr. rer. nat. Jan Pennekamp

Postdoctoral Researcher

Ahornstraße 55, building E3 52074 Aachen Germany
9032
+49 241 80-21411
jan.pennekamp@comsys.rwth-aachen.de

Short CV

Research My fields of research cover the Industrial Internet of Things (IIoT), Information Systems, and Privacy Enhancing Technologies (PETs). In these areas, I am primarily interested in security & privacy implications as well as the application and the design of secure computation, covering both privacy-preserving and privacy-enhancing technologies. Additionally, I am interested in all kinds of research methodology (in computer science). Recently, I moved into healthcare-related research. As part of this direction, I am studying the implications and utility of synthetic data.

Background I am a postdoctoral researcher at the Chair of Communication and Distributed Systems, where I also pursued my Ph.D. studies in part time from 2018 to 2023; researching security and privacy in the Industrial Internet of Things (IIoT). I am a member of the Security and Privacy research group. In 2011, I began my studies in Computer Science at RWTH Aachen University, received my B.Sc. degree in 2014, and graduated with M.Sc. degree in 2018. In 2014, I studied abroad at Aalto University for one academic year. Besides, in 2015, I interned at the SECAN-Lab at the University of Luxembourg for six month where I worked on website fingerprinting in anonymization networks. The corresponding artifacts were selected as a finalist for the Artifacts Competition and Impact Award at ACSAC 2022.

Awards I am a Klaus Tschira Boost Fund Fellow 2025 (selection ratio below 5%). Moreover, I am attendee and SAP grantee of the 12th Heidelberg Laureate Forum in 2025. In 2022, my team and I received the “Young Researcher Award 2022” of the Cluster of Excellence “Internet of Production” for our interdisciplinary research. In 2021, the profile area of information and communication technology awarded me with the “ICT Young Researcher Award”. Besides, I received stipends to attend RWC 2020 and ACSAC 2022. Furthermore, I was awarded the 1st prize of TDWI Award 2018 for the best master thesis in the area of analytics, big data, and business intelligence. In 2018, I received a Google Scholarship for my Ph.D. studies due to my academic achievements and my persistent demonstration of leadership. During my studies, as part of a Research Focus Class, our team’s submission to the 2016 iDASH Genome Privacy & Security Competition was ranked runner-up and awarded with the HLI and Genecloud Award.

Talks Please have a look at my personal website for an up-to-date overview of past presentations.

Teaching For a list of advised theses, see the list below. You may send me a message if you are interested in writing a thesis with me. Please contact me on a first-name basis. I’m Jan :-). For a list of (other) teaching activities I was involved in, please take a look at my personal website.


Projects

I am primarily researching in the Cluster of Excellence “Internet of Production”, where I am also serving as the deputy workstream coordinator for CRD-A Workstream I (since April 2019). Moreover, I am currently holding (lead) positions in the following projects: AI-MED, AURA-CTP, CALCIPROTECT, RFC, RUST, SUSTAINET-guardian, and SYNCLIVER. In the past, I further participated in the following projects: COAT (2022-2024). As a student assistant (2016-2018), I was involved in the TRINICS project to increase the consumer awareness of cloud services.


Professional Service

See also Web of Science.

Organizer IEEE Conference on Industrial Cyber-Physical Systems (ICPS: 2025; Special Session)

Program Committee Member ACM Conference on Computer and Communications Security (CCS 2025; Posters/Demos), ACM Symposium On Applied Computing (SAC 2026; DSTDS Track), Building a Secure & Empowered Cyberspace (BuildSEC: 2024, 2025), IEEE International Conference on Blockchain (BLOCKCHAIN: 2024, 2025), IEEE European Symposium on Security and Privacy (EuroS&P: 2025; Noteworthy Reviewer; 2026), IEEE International Conference on Blockchain and Cryptocurrency (ICBC: 2024, 2025, 2026), IEEE Symposium on Security and Privacy (S&P: 2020; Student PC + Poster Jury), International Congress on Blockchain and Applications (2023, 2024, 2025), The ACM Web Conference (TheWebConf/WWW: 2024; Outstanding Reviewer Award; 2025 + PhD Symposium), USENIX Security Symposium (2026), Workshop on Sustainable Technologies for the Next-Generation of Resilient and Energy-Efficient Mobile Networks (STREEM: 2025)

Reviewer for Conferences CITA (2021), CSAE (2020, 2021), CPSL (2025), EuroS&P (2022), FEBM (2021), HICSS (2021, 2022, 2023, 2025), ICPS (2025), ITU-K (2024), MobiQuitous (2020), NDSS (2025), PETS (2020.3, 2020.4, 2021.2, 2021.3, 2022.2)

Reviewer for Journals ACM Transactions on the Web (2025), applied sciences (2023), Blockchain: Research and Applications (2022, 2023), Computer (2020), Computer Communications (2022, 2023, 2024), Computer Networks (2025), Computer Science Review (2025), Computers in Industry (2022, 2023, 2024), Computers & Security (2021, 2022, 2023, 2024), Data & Knowledge Engineering (2024), Expert Systems with Applications (2022, 2024), Future Generation Computer Systems (2022, 2023, 2024, 2025), IEEE Access (2024), IEEE Transactions on Dependable and Secure Computing (2022, 2023), IEEE Transactions on Network and Service Management (2022, 2023, 2025), International Journal of Information Management (2018), International Journal of Information Security (2023), International Journal of Information Technology & Decision Making (2022), Internet of Things (2022), Journal of Big Data (2023), Journal of Cybersecurity and Privacy (2025), Journal of Information Security and Applications (2020, 2021, 2023), Journal of Open Innovation: Technology, Market, and Complexity (2025), machines (2022), Pervasive and Mobile Computing (2019, 2021, 2022, 2023), Security and Communication Networks (2023), sensors (2021, 2022), Scientific Reports (2024), SoftwareX (2022), sustainability (2022), systems (2022, 2024), Transactions on Emerging Telecommunications Technologies (2021)

Young Researcher Supervision Development of a Privacy-preserving Infection Risk Assessment Protocol (2021, Co-supervisor as part of a Mitacs Globalink Research Award), Ensemble Learning to the Rescue: Improving Machine Learning-based Industrial Intrusion Detection (2022, Speed Fund Project in RWTH’s ICT Profile Area), Recognizing Websites in Tor with Machine Learning (2019, Supervisor for UROP Intern), Reproduction and Replication of Secure Genomic Analysis Approaches (2025, Supervisor for UROP Intern)

Publications

PRepChain: A Versatile Privacy-Preserving Reputation System for Dynamic Supply Chain Environments. Future Generation Computer Systems, vol. 175. February 2026.
Between Promise and Practice: Challenges and Misperceptions of Applying Privacy Enhancing Technologies in Business Contexts . Proceedings of the 59th Hawaii International Conference on System Sciences (HICSS), USA. January 2026.
Poster: Transport Security Orchestration Using DNS. Proceedings of the 33rd IEEE International Conference on Network Protocols (ICNP ‘25), Sep 22 - Sep 25, 2025, Seoul, South Korea. September 2025.
Forschungsorientierte Lehre in der Informatik: Das Konzept der Research Focus Class. Proceedings of the 11th Fachtagung Hochschuldidaktik Informatik (HDI ‘25), Sep 10 - Sep 11, 2025, Freiberg, Germany, co-located with the 23. Fachtagung Bildungstechnologien der Gesellschaft für Informatik e.V. (DELFI '25). September 2025.
LUA-IoT: Let’s Usably Authenticate the IoT. Information Security and Cryptology – ICISC 2024. Lecture Notes in Computer Science (LNCS), vol. 15596. Presented at the 27th International Conference on Information Security and Cryptology (ICISC '24), Nov 20 - Nov 22, 2024, Seoul, Korea. June 2025.
ConfMod: A Simple Modeling of Confidentiality Requirements for Inter-Organizational Data Sharing. Proceedings of the 6th Workshop on Management for Industry 5.0 (MFI5.0 ‘25), May 12, 2025, Honolulu, HI, USA, co-located with the 2025 IEEE/IFIP Network Operations and Management Symposium (NOMS '25). May 2025.
Advancing Network Monitoring with Packet-Level Records and Selective Flow Aggregation. Proceedings of the 2025 IEEE/IFIP Network Operations and Management Symposium (NOMS ‘25), May 12 - May 16, 2025, Honolulu, HI, USA. May 2025.
Congestion-Responsive Queuing for Internet Flows. Proceedings of the 2025 IEEE/IFIP Network Operations and Management Symposium (NOMS ‘25), May 12 - May 16, 2025, Honolulu, HI, USA. May 2025.
Transformer-Based Integrative Patient Representations from Single-Cell RNA Data. RWTH Aachen University, Apr 28, 2025, Singapore, Singapore, co-located with the 13th International Conference on Learning Representations (ICLR '25). April 2025.
MapXchange: Designing a Confidentiality-Preserving Platform for Exchanging Technology Parameter Maps. Proceedings of the 40th ACM/SIGAPP Symposium on Applied Computing (SAC ‘25), Mar 31 - Apr 4, 2025, Catania, Italy. March 2025.
Sichere industrielle Zusammenarbeit – Ein Paradigmenwechsel. Factory Innovation, vol. 2025, no. 2. March 2025.
Privacy-Aware Supply Chain Ratings: Interdisciplinary Research On Collaborative Supply Chain Management. Proceedings of the 7th Conference on Production Systems and Logistics (CPSL ‘25), Mar 18 - Mar 21, 2025, Lima, Peru. March 2025.
Detecting Ransomware Despite I/O Overhead: A Practical Multi-Staged Approach. Proceedings of the 22nd Annual Network and Distributed System Security Symposium (NDSS ‘25), Feb 24 - Feb 28, 2025, San Diego, CA, USA. February 2025.
Complementing Organizational Security in Data Ecosystems with Technical Guarantees. Proceedings of the 1st Conference on Building a Secure and Empowered Cyberspace (BuildSEC ‘24), Dec 19 - Dec 20, 2024, New Delhi, India. December 2024.
PASTA-4-PHT: A Pipeline for Automated Security and Technical Audits for the Personal Health Train. arXiv. December 2024.
scE(match): Privacy-Preserving Cluster Matching of Single-Cell Data. Proceedings of the 23rd IEEE International Conference on Trust, Security and Privacy in Computing and Communications (TrustCom ‘24), Dec 17 - Dec 21, 2024, Sanya, China. December 2024.
mcBERT: Patient-Level Single-cell Transcriptomics Data Representation. bioRxiv. November 2024.
Reputation Systems for Supply Chains: The Challenge of Achieving Privacy Preservation. Mobile and Ubiquitous Systems: Computing, Networking and Services. Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering (LNICST). Presented at the 20th EAI International Conference on Mobile and Ubiquitous Systems: Computing, Networking and Services (MobiQuitous '23), Nov 14 - Nov 17, 2023, Melbourne, VIC, Australia. November 2024.
Toward Technically Enforceable Consent in Healthcare Research. Research Papers of the 9th Interdisciplinary Annual Conference of the Privacy Platform, vol. 4, Oct 17 - Oct 18, 2024, Berlin, Germany. October 2024.
One IDS is not Enough! Exploring Ensemble Learning for Industrial Intrusion Detection. Computer Security – ESORICS 2023. Lecture Notes in Computer Science (LNCS), vol. 14345. Presented at the 28th European Symposium on Research in Computer Security (ESORICS '23), Sep 25 - Sep 29, 2023, The Hague, The Netherlands. September 2024.
Evolving the Industrial Internet of Things: The Advent of Secure Collaborations. Proceedings of the 2024 IEEE/IFIP Network Operations and Management Symposium (NOMS ‘24), May 6 - May 10, 2024, Seoul, Korea. May 2024.
The Unresolved Need for Dependable Guarantees on Security, Sovereignty, and Trust in Data Ecosystems. Data & Knowledge Engineering, vol. 151. May 2024.
Unconsidered Installations: Discovering IoT Deployments in the IPv6 Internet. Proceedings of the 2024 IEEE/IFIP Network Operations and Management Symposium (NOMS ‘24), May 6 - May 10, 2024, Seoul, Korea. May 2024.
Blockchain Technology Accelerating Industry 4.0. Blockchains – A Handbook on Fundamentals. Advances in Information Security, vol. 105. March 2024.
An Interdisciplinary Survey on Information Flows in Supply Chains. ACM Computing Surveys, vol. 56, no. 2. February 2024.
Securing Sensing in Supply Chains: Opportunities, Building Blocks, and Designs. IEEE Access, vol. 12. January 2024.
Offering Two-Way Privacy for Evolved Purchase Inquiries. ACM Transactions on Internet Technology, vol. 23, no. 4. November 2023.
Poster: Accountable Processing of Reported Street Problems. Proceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security (CCS ’23), Nov 26 - Nov 30, 2023, Copenhagen, Denmark. November 2023.
FAIR Sensor Ecosystem: Long-Term (Re-)Usability of FAIR Sensor Data through Contextualization. Proceedings of the 21st IEEE International Conference on Industrial Informatics (INDIN ‘23), Jul 18 - Jul 20, 2023, Lemgo, Germany. July 2023.
Designing Secure and Privacy-Preserving Information Systems for Industry Benchmarking. Advanced Information Systems Engineering. Lecture Notes in Computer Science, vol. 13901. Presented at the 35th International Conference on Advanced Information Systems Engineering (CAiSE '23), Jun 12 - Jun 16, 2023, Zaragoza, Spain. June 2023.
Evolving the Digital Industrial Infrastructure for Production: Steps Taken and the Road Ahead. Internet of Production: Fundamentals. Interdisciplinary Excellence Accelerator Series. February 2023.
Model-Based Controlling Approaches for Manufacturing Processes. Internet of Production. February 2023.
CUMUL & Co: High-Impact Artifacts for Website Fingerprinting Research. Cybersecurity Artifacts Competition and Impact Award at 38th Annual Computer Security Applications Conference (ACSAC ‘22), Dec 5 - Dec 9, 2022, Austin, TX, USA. December 2022.
Poster: Ensemble Learning for Industrial Intrusion Detection. Proceedings of the 38th Annual Computer Security Applications Conference (ACSAC ‘22), Dec 5 - Dec 9, 2022, Austin, TX, USA. December 2022.
On the Need for Strong Sovereignty in Data Ecosystems. Proceedings of the 1st International Workshop on Data Ecosystems (DEco ‘22), vol. 3306, Sep 5, 2022, Sydney, NSW, Australia, co-located with the 8th International Conference on Very Large Databases (VLDB '22). September 2022.
A Computer Science Perspective on Digital Transformation in Production. ACM Transactions on Internet of Things, vol. 3, no. 2. May 2022.
A False Sense of Security? Revisiting the State of Machine Learning-Based Industrial Intrusion Detection. Proceedings of the 8th ACM Cyber-Physical System Security Workshop (CPSS ‘22), May 30, 2022, Nagasaki, Japan, co-located with the 17th ACM ASIA Conference on Computer and Communications Security (ASIACCS '22). May 2022.
A Moderation Framework for the Swift and Transparent Removal of Illicit Blockchain Content. Proceedings of the 4th IEEE International Conference on Blockchain and Cryptocurrency (ICBC ‘22), May 2 - May 5, 2022, Shanghai, China. May 2022.
Missed Opportunities: Measuring the Untapped TLS Support in the Industrial Internet of Things. Proceedings of the 2022 ACM Asia Conference on Computer and Communications Security (ASIACCS ‘22), May 30 - Jun 2, 2022, Nagasaki, Japan. May 2022.
Scalable and Privacy-Focused Company-Centric Supply Chain Management. Proceedings of the 4th IEEE International Conference on Blockchain and Cryptocurrency (ICBC ‘22), May 2 - May 5, 2022, Shanghai, China. May 2022.
Collaboration is not Evil: A Systematic Look at Security Research for Industrial Use. Proceedings of the Workshop on Learning from Authoritative Security Experiment Results (LASER ‘20), Dec 8, 2020, Austin, TX, USA, co-located with the 36th Annual Computer Security Applications Conference (ACSAC '20). December 2021.
Development of a Model to Evaluate the Potential of 5G Technology for Latency-Critical Applications in Production. Proceedings of the 28th IEEE International Conference on Industrial Engineering and Engineering Management. Presented at the 2021 IEEE International Conference on Industrial Engineering and Engineering Management (IEEM '21), Dec 13 - Dec 16, 2021, Singapore, Singapore. December 2021.
Confidential Computing-Induced Privacy Benefits for the Bootstrapping of New Business Relationships. RWTH Aachen University, Nov 15, 2021, Seoul, Korea, co-located with the 28th ACM SIGSAC Conference on Computer and Communications Security (CCS '21). November 2021.
Cookie Banners and Privacy Policies: Measuring the Impact of the GDPR on the Web. ACM Transactions on the Web, vol. 15, no. 4. November 2021.
POSTER: How Dangerous is My Click? Boosting Website Fingerprinting By Considering Sequences of Webpages. Proceedings of the 28th ACM SIGSAC Conference on Computer and Communications Security. Presented at the 2021 ACM SIGSAC Conference on Computer and Communications Security (CCS '21), Seoul, Korea. November 2021.
CoinPrune: Shrinking Bitcoin's Blockchain Retrospectively. IEEE Transactions on Network and Service Management, vol. 18, no. 3. September 2021.
Demo: Traffic Splitting for Tor — A Defense against Fingerprinting Attacks. Proceedings of the 2021 International Conference on Networked Systems (NetSys ‘21). Electronic Communications of the EASST. Presented at the Proceedings of the 2021 International Conference on Networked Systems (NetSys ‘21), Sep 13 - Sep 16, 2021, Lübeck, Germany. September 2021.
Data Reliability and Trustworthiness through Digital Transmission Contracts. The Semantic Web, vol. 12731. Lecture Notes in Computer Science (LNCS), vol. 12731. Presented at the 18th Extended Semantic Web Conference (ESWC '21), Jun 6 - Jun 10, 2021, Heraklion, Greece. June 2021.
Blockchain-Based Privacy Preservation for Supply Chains Supporting Lightweight Multi-Hop Information Accountability. Information Processing & Management, vol. 58, no. 3. May 2021.
FactStack: Interoperable Data Management and Preservation for the Web and Industry 4.0. Proceedings of the 19th Symposium for Database Systems for Business, Technology and Web (BTW ‘21), vol. P-312. Lecture Notes in Informatics (LNI), Sep 13 - Sep 17, 2021, Dresden, Germany. May 2021.
Holarchy for Line-less Mobile Assembly Systems Operation in the Context of the Internet of Production. Proceedings of the 14th CIRP Conference on Intelligent Computation in Manufacturing Engineering (ICME ‘20), vol. 99, Jul 14 - Jul 17, 2020, Gulf of Naples, Italy. May 2021.
Transparent End-to-End Security for Publish/Subscribe Communication in Cyber-Physical Systems. Proceedings of the 2021 ACM Workshop on Secure and Trustworthy Cyber-Physical Systems (SaT-CPS ‘21), Apr 28, 2021, Virtual, co-located with the 11th ACM Conference on Data and Application Security and Privacy (CODASPY '21). April 2021.
Privacy-Preserving Production Process Parameter Exchange. Proceedings of the 36th Annual Computer Security Applications Conference. Presented at the 2020 Annual Computer Security Applications Conference (ACSAC '20), Dec 7 - Dec 11, 2020, Austin, TX, USA. December 2020.
Revisiting the Privacy Needs of Real-World Applicable Company Benchmarking. Proceedings of the 8th Workshop on Encrypted Computing & Applied Homomorphic Cryptography (WAHC ‘20), Dec 15, 2020, Virtual Event. December 2020.
Expressing FactDAG Provenance with PROV-O. Proceedings of the 6th Workshop on Managing the Evolution and Preservation of the Data Web (MEPDaW ‘20), vol. 2821, Nov 1, 2020, Athens, Greece, co-located with the 19th International Semantic Web Conference (ISWC '20). November 2020.
TrafficSliver: Fighting Website Fingerprinting Attacks with Traffic Splitting. Proceedings of the 27th ACM SIGSAC Conference on Computer and Communications Security (CCS ‘20), Nov 9 - Nov 13, 2020, Virtual Event, USA. November 2020.
Easing the Conscience with OPC UA: An Internet-Wide Study on Insecure Deployments. Proceedings of the ACM Internet Measurement Conference (IMC ‘20), Oct 27 - Oct 29, 2020, Pittsburgh, PA, USA. October 2020.
Utilizing Public Blockchains for the Sybil-Resistant Bootstrapping of Distributed Anonymity Services. Proceedings of the 15th ACM Asia Conference on Computer and Communications Security (ASIACCS ‘20), Oct 5 - Oct 9, 2020, Taipei, Taiwan. October 2020.
Secure End-to-End Sensing in Supply Chains. Proceedings of the 5th International Workshop on Cyber-Physical Systems Security (CPS-Sec ‘20), Jul 1, 2020, Avignon, France, co-located with the 8th IEEE Conference on Communications and Network Security (CNS '20). July 2020.
Stamping Process Modelling in an Internet of Production. Procedia Manufacturing, vol. 49. Presented at the 8th International Conference on Through-Life Engineering Service (TESCONF '19), Oct 27 - Oct 29, 2019, Cleveland, OH, USA. July 2020.
How to Securely Prune Bitcoin’s Blockchain. Proceedings of the 19th IFIP Networking 2020 Conference (NETWORKING ‘20), Jun 22 - Jun 25, 2020, Paris, France. June 2020.
Private Multi-Hop Accountability for Supply Chains. Proceedings of the 1st Workshop on Blockchain for IoT and Cyber-Physical Systems (BIoTCPS ‘20), Dublin, Ireland, co-located with the IEEE International Conference on Communications (ICC '20). June 2020.
Assessing the Security of OPC UA Deployments. Proceedings of the 1st ITG Workshop on IT Security (ITSec ‘20), Apr 2 - Apr 3, 2020, Tübingen, Germany. April 2020.
Connected, digitalized welding production — Secure, ubiquitous utilization of data across process layers. Advanced Joining Processes, vol. 125. Advanced Structured Materials. Presented at the 1st International Conference on Advanced Joining Processes (AJP '19), Oct 24 - Oct 25, 2019, Ponta Delgada, Azores, Portugal. April 2020.
FactDAG: Formalizing Data Interoperability in an Internet of Production. IEEE Internet of Things Journal, vol. 7, no. 4. April 2020.
A Secure and Practical Decentralized Ecosystem for Shareable Education Material. Proceedings of the 34th International Conference on Information Networking (ICOIN ‘20), Jan 7 - Jan 10, 2020, Barcelona, Spain. January 2020.
Security Considerations for Collaborations in an Industrial IoT-based Lab of Labs. Proceedings of the 3rd IEEE Global Conference on Internet of Things (GCIoT ‘19), Dec 4 - Dec 7, 2019, Dubai, United Arab Emirates. December 2019.
Dataflow Challenges in an Internet of Production: A Security & Privacy Perspective. Proceedings of the 5th ACM Workshop on Cyber-Physical Systems Security and PrivaCy (CPS-SPC ‘19), Nov 11, 2019, London, United Kingdom, co-located with the 26th ACM SIGSAC Conference on Computer and Communications Security (CCS '19). November 2019.
POSTER: Traffic Splitting to Counter Website Fingerprinting. Proceedings of the 2019 ACM SIGSAC Conference on Computer and Communications Security (CCS ‘19), Nov 11 - Nov 15, 2019, London, United Kingdom. November 2019.
Multipathing Traffic to Reduce Entry Node Exposure in Onion Routing. Proceedings of the 27th IEEE International Conference on Network Protocols (ICNP ‘19), Oct 7 - Oct 10, 2019, Chicago, IL, USA. October 2019.
Privacy-Preserving Remote Knowledge System. Proceedings of the 27th IEEE International Conference on Network Protocols (ICNP ‘19), Oct 7 - Oct 10, 2019, Chicago, IL, USA. October 2019.
Tailoring Onion Routing to the Internet of Things: Security and Privacy in Untrusted Environments. Proceedings of the 27th IEEE International Conference on Network Protocols (ICNP ‘19), Oct 7 - Oct 10, 2019, Chicago, IL, USA. October 2019.
Hi Doppelgänger: Towards Detecting Manipulation in News Comments. Companion Proceedings of the 2019 World Wide Web Conference (CyberSafety ‘19). Presented at the 4th Workshop on Computational Methods in Online Misbehavior, San Francisco, CA, USA, co-located with the World Wide Web Conference 2019 (WWW '19). May 2019.
Towards an Infrastructure Enabling the Internet of Production. Proceedings of the 2nd IEEE International Conference on Industrial Cyber-Physical Systems (ICPS ‘19), May 6 - May 9, 2019, Taipei, Taiwan. May 2019.
CloudAnalyzer: Uncovering the Cloud Usage of Mobile Apps. Proceedings of the 14th EAI International Conference on Mobile and Ubiquitous Systems: Computing, Networking and Services (MobiQuitous ‘17), Nov 7 - Nov 10, 2017, Melbourne, VIC, Australia. November 2017.
BLOOM: BLoom filter based Oblivious Outsourced Matchings. BMC Medical Genomics, vol. 10, no. Suppl 2. Presented at the 5th iDASH Privacy and Security Workshop, Nov 11, 2016, Chicago, IL, USA. July 2017.
Website Fingerprinting at Internet Scale. Proceedings of the 23rd Annual Network and Distributed System Security Symposium (NDSS ‘16), Feb 21 - Feb 24, 2016, San Diego, CA, USA. February 2016.

Advised Theses

A Topic in Science Communication
Master's Thesis, RWTH Aachen University, September 2025
Examiners: Klaus Wehrle, Wil van der Aalst (PADS)
A Topic in Privacy-Enhancing Technologies
Bachelor's Thesis, RWTH Aachen University, April 2025
Examiners: Klaus Wehrle, Sandra Geisler (DSMA)
A Topic in Usage Control
Bachelor's Thesis, RWTH Aachen University, April 2025
Examiners: Klaus Wehrle, Sandra Geisler (DSMA)
Privacy-Preserving Cluster-to-Cluster Matching for Single-Cell RNA Sequencing Data
Master's Thesis, RWTH Aachen University, December 2024
Advisors: Johannes Lohmöller, Jan Pennekamp, Sikander Hayat (UKA)
Examiners: Klaus Wehrle, Rafael Kramann (UKA)
Addressing sensitivity in IIoT data sharing with a modeling framework
Bachelor's Thesis, RWTH Aachen University, November 2024
Advisors: Jan Pennekamp, Paul Weiler (WZL-WM), Vincent Lohrmann (WZL-WM)
Examiners: Klaus Wehrle, Christian Brecher (WZL-WM)
Privacy-Preserving Coopetition: The Exchange of Machining Process Parameters
Master's Thesis, RWTH Aachen University, September 2024
Advisors: Jan Pennekamp, Vincent Lohrmann (WZL-WM), Paul Weiler (WZL-WM)
Examiners: Klaus Wehrle, Christian Brecher (WZL-WM)
Fine-granular risk classification for privacy-preserving contact tracing
Bachelor's Thesis, RWTH Aachen University, September 2024
Advisors: Jan Pennekamp, Koray Karabina (University of Waterloo)
Examiners: Klaus Wehrle, Koray Karabina (University of Waterloo)
Cross-Institutional Discovery of Rare-Disease Patients using Fully Homomorphic Encryption
Bachelor's Thesis, RWTH Aachen University, August 2024
Examiners: Klaus Wehrle, Felix Mottaghy (UKA)
Lessons Learned from the Pandemic: The Next Generation of Privacy-preserving Contact Tracing
Master's Thesis, RWTH Aachen University, July 2024
Advisors: Jan Pennekamp, Koray Karabina (University of Waterloo), Florian Kerschbaum (University of Waterloo)
Examiners: Klaus Wehrle, Koray Karabina (University of Waterloo)
Sourcing Trusted Sensing to Improve Privacy-Preserving Reputation Systems in Supply Chains
Master's Thesis, RWTH Aachen University, September 2023
Advisors: Jan Pennekamp, Lennart Bader (FKIE), Maria Spiß (FIR)
Examiners: Klaus Wehrle, Salil Kanhere (UNSW)
FOLKS Award for the best Master's theses in 2023
Systematically Exploring the Fusibility of State-of-the-Art Industrial Intrusion Detection Systems
Master's Thesis, RWTH Aachen University, February 2023
Examiners: Klaus Wehrle, Elmar Padilla (H-BRS)
FOLKS Award for the best Master's theses in 2023
Detecting Sensor Anomalies in Supply Chains Using Semantic Checks
Bachelor's Thesis, RWTH Aachen University, February 2023
Advisors: Lennart Bader (FKIE), Jan Pennekamp
Examiners: Klaus Wehrle, Dirk Thißen
Applying Trusted Execution for Privacy-Preserving Company Benchmarking
Bachelor's Thesis, RWTH Aachen University, September 2022
Advisors: Johannes Lohmöller, Jan Pennekamp, Patrick Sapel (IKV)
Examiners: Klaus Wehrle, Christian Hopmann (IKV)
FOLKS Award for the best Bachelor's theses in 2022
Implementing FAIR Principles for Long-term Sensor Data Storage in the Internet of Production
Master's Thesis, RWTH Aachen University, August 2022
Advisors: Jan Pennekamp, Matthias Bodenbenner (WZL)
Examiners: Klaus Wehrle, Robert H. Schmitt (WZL)
Holistic Data Extraction From Technical Documentation For Generating Embedded Software
Master's Thesis, RWTH Aachen University, August 2022
Advisor: Jan Pennekamp
Examiners: Klaus Wehrle, Stefan Kowalewski (i11)
Improving Privacy-Preserving Company Benchmarking with Modern FHE Schemes
Bachelor's Thesis, RWTH Aachen University, December 2021
Advisors: Jan Pennekamp, Niklas Rodemann (WZL), Martin Henze (FKIE)
Examiners: Klaus Wehrle, Günther Schuh (WZL)
Analysis of Existing Concepts to Evaluate 5G Technology Implementation for Latency-Critical Applications in Production
Bachelor's Thesis, RWTH Aachen University, November 2021
Advisors: Jan Pennekamp, Raphael Kiesel (WZL)
Examiners: Klaus Wehrle, Robert H. Schmitt (WZL)
Integrative Process & Data Management for Safety-critical Industries
Master's Thesis, RWTH Aachen University, November 2021
Advisors: Lars Gleim (i5), Florian Brillowski (ITA), Jan Pennekamp
Examiners: Stefan Decker (i5), Thomas Gries (ITA)
Enhancing Supply Chain Management with Trustworthy and Reliable Sensor Data
Bachelor's Thesis, RWTH Aachen University, September 2021
Advisors: Jan Pennekamp, Lennart Bader (FKIE), Fritz Alder (KU Leuven)
Examiners: Klaus Wehrle, Frank Piessens (KU Leuven)
Two-way Privacy For Purchase Inquiries in Industry
Master's Thesis, RWTH Aachen University, August 2021
Advisors: Jan Pennekamp, Timo Heutmann (IPT)
Examiners: Klaus Wehrle, Robert H. Schmitt (WZL)
FOLKS Award for the best Master's thesis in 2021 & Finalist of the eurobits Excellence Award 2021
Incident Reporting and Security in Smart Supply Chains
Master's Thesis, RWTH Aachen University, May 2021
Advisors: Lars Gleim (i5), Jan Pennekamp
Examiners: Stefan Decker (i5), Klaus Wehrle
Integrity and Authenticity in Distributed Information Systems
Bachelor's Thesis, RWTH Aachen University, March 2021
Advisors: Lars Gleim (i5), Jan Pennekamp
Examiners: Stefan Decker (i5), Klaus Wehrle
Reliable Data Immutability in an Internet of Production
Bachelor's Thesis, RWTH Aachen University, March 2021
Advisors: Lars Gleim (i5), Jan Pennekamp
Examiners: Stefan Decker (i5), Klaus Wehrle
Web-Based Privacy-Preserving Comparison of KPIs
Bachelor's Thesis, RWTH Aachen University, November 2020
Examiners: Klaus Wehrle, Elmar Padilla (H-BRS)
Privacy-Preserving Company Benchmarking
Bachelor's Thesis, RWTH Aachen University, September 2020
Advisors: Jan Pennekamp, Martin Henze (FKIE), Patrick Sapel (IKV)
Examiners: Klaus Wehrle, Christian Hopmann (IKV)
Performance and Security Implications of PeerFlow --- Distributed Load Balancing in Tor
Bachelor's Thesis, RWTH Aachen University, September 2020
Advisors: Jan Pennekamp, Asya Mitseva (uni.lu)
Examiners: Klaus Wehrle, Andriy Panchenko (BTU Cottbus)
Privacy-Preserving Exchange of Process Parameters
Master's Thesis, RWTH Aachen University, July 2020
Advisors: Jan Pennekamp, Yannik Lockner (IKV)
Examiners: Klaus Wehrle, Christian Hopmann (IKV)
Berthold Vöcking Master Award in 2020 & FOLKS Award for the best Master's thesis in 2020 & Finalist of the eurobits Excellence Award 2020
A Distributed Data Revisioning System for the Internet of Production
Bachelor's Thesis, RWTH Aachen University, April 2020
Advisors: Lars Gleim (i5), Jan Pennekamp
Examiners: Stefan Decker (i5), Klaus Wehrle
Privacy and Transparency in Digital Supply Chains
Master's Thesis, RWTH Aachen University, March 2020
Advisors: Jan Pennekamp, Roman Matzutt, Philipp Niemietz (WZL)
Examiners: Klaus Wehrle, Thomas Bergs (WZL)
Young Researcher Award 2021 of the German Association for Data Protection and Data Security (GDD)
A tailored Communication Infrastructure for the Construction Site of Tomorrow
Bachelor's Thesis, RWTH Aachen University, March 2020
Advisors: Jan Pennekamp, Johannes Lipp (IMA)
Examiners: Klaus Wehrle, Ingrid Isenhardt (IMA)
Path Splitting for Tor --- A Countermeasure against Fingerprinting Attacks
Bachelor's Thesis, RWTH Aachen University, September 2019
Examiners: Klaus Wehrle, Ulrike Meyer (IT-Sec)
KuVS prize for best Bachelor's thesis in 2019
Online integration of industrial IOT data into custom OPC UA information models
Master's Thesis, RWTH Aachen University, September 2019
Advisors: Jan Pennekamp, Daniel Lütticke (IMA)
Examiners: Klaus Wehrle, Ingrid Isenhardt (IMA)
Exploiting User Sessions for Website Fingerprinting
Bachelor's Thesis, RWTH Aachen University, March 2019
Advisors: Jan Pennekamp, Asya Mitseva (uni.lu)
Examiners: Klaus Wehrle, Andriy Panchenko (BTU Cottbus)
FOLKS Award for the best Bachelor's thesis in 2019
Anonymity for the Tiny: Realizing Tor for the Internet of Things
Master's Thesis, RWTH Aachen University, September 2018
Examiners: Klaus Wehrle, Ulrike Meyer (IT-Sec)
FOLKS Award for the best Master's thesis in 2018