~ similar to 2604.07839v1· 20 results
The paper proposes a RADIUS-based framework to maintain persistent device identity for Network Access Control (NAC) despite modern operating system MAC address randomization, ensuring regulatory compl…
FIDEM introduces a standard-compliant framework that uses Zero-Knowledge Proofs to securely bind IoT devices to their Manufacturer Usage Description (MUD) profiles, mitigating risks associated with in…
The paper proposes a UEFI system utilizing SPDM to authenticate connected PCIe and USB devices, successfully demonstrating that this enhanced security mechanism introduces an acceptable processing ove…
This survey reviews hardware-rooted trust mechanisms, such as PUFs and TPMs, demonstrating that hardware-based solutions are superior to software-only methods for ensuring secure authentication and AI…
This paper conducts a literature review of non-academic publications to consolidate current knowledge, trends, and future challenges regarding the industrial integration of IoT devices within a Zero T…
The Device Context Protocol (DCP) introduces a compact, safety-first communication standard designed to allow LLMs to reliably control resource-constrained physical microcontrollers, significantly imp…
The paper introduces presidio-hardened-x402, an open-source middleware that intercepts x402 payment requests to detect and redact PII and enforce spending policies before on-chain settlement.
Xin Wang, Peichun Hua, Chip Hong Chang, Wenye Liu +1 more
The paper proposes a scalable, helper-data-free open-set framework using an OpenGAN-based classifier to unify authentication for diverse and large populations of heterogeneous PUF-based IoT devices.
LiteAtt introduces a verifier-less, Peer-to-Peer Self-Attestation (P2P-SA) framework for modern IoT MCUs, enabling mutual authentication and firmware attestation directly within the connection handsha…
The paper introduces a novel toolkit to enhance RISC-V Trusted Execution Environments (TEEs) by adding modular extensions for secure enclave update, migration, state continuity, and trusted time, ther…
The paper addresses the vulnerability of zero-knowledge proximity proofs in stateful systems by proposing Zairn-ZKP, a method that embeds operational context (like drop identity and policy version) di…
This paper analyzes digital privacy risks in IoT ecosystems, proposing a comprehensive framework (AURA-IoT) and taxonomy to mitigate threats using advanced privacy-enhancing technologies.
The paper proposes bPk#, a distributed architecture for pseudonyms that enhances privacy and availability in national eID systems by delegating pseudonym computation rights to users and service provid…
zk-X509 is a privacy-preserving identity system that uses zero-knowledge proofs to prove ownership of standard X.509 certificates on a public blockchain without revealing private keys or personal data…
The paper proposes and proves the security of a generic, full end-to-end credential revocation system for European Digital Identity Wallets, relying on a single server and secure channels.
This paper introduces a unified threat model and evaluation framework to systematically compare privacy-preserving techniques for distributed learning in IoT systems, highlighting the trade-off betwee…
This paper investigates privacy risks associated with credential disclosure in the upcoming EU Digital Identity Wallet, demonstrating that users tend to overshare information, and proposes a Credentia…
The paper proposes a revocation-ready key management layer for blockchain-based IoT data sharing that replaces online key release with ciphertext key publication, enabling local, policy-based decrypti…
The paper addresses the over-reliance on GDPR in digital privacy research by systematically normalizing heterogeneous global data protection laws into a unified, data-lifecycle-aligned abstraction.
Yue Xiao, Ling Jiang, Sen Nie, Ding Li +3 more
This paper systematically evaluates Provenance-based Intrusion Detection Systems (PIDSes) in real industrial scenarios, revealing that existing systems struggle with data heterogeneity, advanced attac…