中文
相关论文

相关论文: Do not trust me: Using malicious IdPs for analyzin…

200 篇论文

Secure Device Pairing (SDP) schemes have been developed to facilitate secure communications among smart devices, both personal mobile devices and Internet of Things (IoT) devices. Comparison and assessment of SDP schemes is troublesome,…

密码学与安全 · 计算机科学 2017-09-21 Mikhail Fomichev , Flor Álvarez , Daniel Steinmetzer , Paul Gardner-Stephen , Matthias Hollick

OpenID Connect has revolutionized online authentication based on single sign-on (SSO) by providing a secure and convenient method for accessing multiple services with a single set of credentials. Despite its widespread adoption, critical…

软件工程 · 计算机科学 2025-10-06 Tamjid Al Rahat , Yanju Chen , Yu Feng , Yuan Tian

Fine-tuning APIs make frontier LLMs easy to customize, but they can also weaken safety alignment during fine-tuning. While prior work shows that benign supervised fine-tuning (SFT) can reduce refusal behavior, deployed fine-tuning pipelines…

密码学与安全 · 计算机科学 2026-05-13 Sangyeon Yoon , Wonje Jeung , Yoonjun Cho , Dongjae Jeon , Albert No

The greatest threat in the new generation network which is called ngn is unsafe authentication. Communication between new servers in ngn world is done based on Session Initiation Protocol. SIP is an application layer control operating on…

密码学与安全 · 计算机科学 2012-09-06 Maisam Mohammadian

Internet of Things (IoT) is becoming an increasingly attractive target for cybercriminals. We observe that many attacks to IoTs are launched in a collusive way, such as brute-force hacking usernames and passwords, to target at a particular…

网络与互联网体系结构 · 计算机科学 2018-08-03 Garegin Grigoryan , Yaoqing Liu , Laurent Njilla , Charles Kamhoua , Kevin Kwiat

The trend toward autonomous robot deployments is on an upward growth curve. These robots are undertaking new tasks and are being integrated into society. Examples of this trend are autonomous vehicles, humanoids, and eldercare. The movement…

密码学与安全 · 计算机科学 2019-04-30 Vincenzo DiLuoffo , William R. Michalson , Berk Sunar

The rapid expansion of connected devices has made them prime targets for cyberattacks. To address these threats, deep learning-based, data-driven intrusion detection systems (IDS) have emerged as powerful tools for detecting and mitigating…

机器学习 · 计算机科学 2025-01-29 Ajesh Koyatan Chathoth , Stephen Lee

Intrusion Detection Systems (IDSs) are integral to safeguarding networks by detecting and responding to threats from malicious traffic or compromised devices. However, standalone IDS deployments often fall short when addressing the…

密码学与安全 · 计算机科学 2025-04-24 Tom Davies , Max Hashem Eiza , Nathan Shone , Rob Lyon

This paper introduces the Identity Control Plane (ICP), an architectural framework for enforcing identity-aware Zero Trust access across human users, workloads, and automation systems. The ICP model unifies SPIFFE-based workload identity,…

密码学与安全 · 计算机科学 2025-04-25 Surya Teja Avirneni

Intrusion Detection & Prevention Systems generally aims at detecting / preventing attacks against Information systems and networks. The basic task of IDPS is to monitor network & system traffic for any malicious packets/patterns and hence…

密码学与安全 · 计算机科学 2010-07-15 Mohammed Misbahuddin , Sachin Narayanan , Bishwa Ranjan Ghosh

Software signing is the most robust method for ensuring the integrity and authenticity of components in a software supply chain. Legacy key-managed signing tools (e.g., OpenPGP) burdened practitioners with key management and signer…

软件工程 · 计算机科学 2026-04-16 Kelechi G. Kalu , Sofia Okorafor , Tanmay Singla , Sophie Chen , Santiago Torres-Arias , James C. Davis

Based on the analysis of $6$-digit one-time passwords(OTP) generated by DIGIPASS GO3 we were able to reconstruct the synchronisation system of the token, the OTP generating algorithm and the verification protocol in details essential for an…

密码学与安全 · 计算机科学 2015-06-23 Igor Semaev

Third-party applications have become an essential part of today's online ecosystem, enhancing the functionality of popular platforms. However, the intensive data exchange underlying their proliferation has increased concerns about…

密码学与安全 · 计算机科学 2024-05-03 Shuaishuai Liu , Gergely Biczók

A fundamental premise of SMS One-Time Password (OTP) is that the used pseudo-random numbers (PRNs) are uniquely unpredictable for each login session. Hence, the process of generating PRNs is the most critical step in the OTP authentication.…

密码学与安全 · 计算机科学 2021-03-11 Siqi Ma , Juanru Li , Hyoungshick Kim , Elisa Bertino , Surya Nepal , Diethelm Ostry , Cong Sun

Cloud-based services have become part of our day-to-day software solutions. The identity authentication process is considered to be the main gateway to these services. As such, these gates have become increasingly susceptible to aggressive…

密码学与安全 · 计算机科学 2017-11-27 Marwan Darwish , Abdelkader Ouda , Luiz Fernando Capretz

The rise of online social networks, user-gene-rated content, and third-party apps made data sharing an inevitable trend, driven by both user behavior and the commercial value of personal information. As service providers amass vast amounts…

密码学与安全 · 计算机科学 2025-05-27 Shuaishuai Liu , Gergely Biczók

The rapid expansion of varied network systems, including the Internet of Things (IoT) and Industrial Internet of Things (IIoT), has led to an increasing range of cyber threats. Ensuring robust protection against these threats necessitates…

密码学与安全 · 计算机科学 2024-03-19 Md. Ashraf Uddin , Sunil Aryal , Mohamed Reda Bouadjenek , Muna Al-Hawawreh , Md. Alamin Talukder

Recently, Li et al. analyzed Lee et al.'s multi-server authentication scheme and proposed a novel smart card and dynamic ID based remote user authentication scheme for multi-server environments. They claimed that their scheme can resist…

密码学与安全 · 计算机科学 2013-05-29 Dawei Zhao , Haipeng Peng , Shudong Li , Yixian Yang

Identity Prove Limited (IDPL) is a long-founded online identity verification software provider of citizens for Banking services. IDPL applies an information governance based on the ISO/IEC 27001:2022 standard of security and within GDPR to…

密码学与安全 · 计算机科学 2023-10-18 Antigoni Kruti

Individual Differential Privacy (iDP) promises users control over their privacy, but this promise can be broken in practice. We reveal a previously overlooked vulnerability in sampling-based iDP mechanisms: while conforming to the iDP…

密码学与安全 · 计算机科学 2026-01-21 Johannes Kaiser , Alexander Ziller , Eleni Triantafillou , Daniel Rückert , Georgios Kaissis