Paper Reading Lists for CS549 (Cryptography and Network Security)

 

In this course, each group of students is required to read all required papers in one chosen topic.

Topics

1.      Survey of the cryptology

a.       W. Diffie. The first ten years of public key cryptography. IEEE proceedings, 76(5), 560--577, 1988.

b.      J. Massey. An introduction to contemporary cryptology. IEEE proceedings, 76(5), 533--549, 1988.

c.       Simmons (ed.). Contemporary Cryptology: the Science of Information Integrity. IEEE press, 1991.

d.      R. L. Rivest. "Cryptology" in Handbook of Theoretical Computer Science, vol. A: Algorithms and Complexity, Elsevier and MIT Press (1990), 717-756.

e.       T. Beth. Algorithm engineering for public key algorithms. IEEE Selected Areas of Communication, 1(4), 458--466, 1990.

2.      Basic introductions and summary

a.       W. Diffie and M.E. Hellman. New directions in cryptography IEEE Transactions on Information Theory, Volume 22, Number 6, November 1976, pp. 644 - 654.

b.      S. Goldwasser and S. Micali.  Probabilistic encryption.   Journal of Computer & System Sciences, Volume 28, Number 2,  April 1984, pp. 270-299.

c.       D.D. Clark and D.R. Wilson. "A Comparison of Commercial and Military Computer Security Policies" In Proceedings of the 1987 IEEE Symposium on Security and Privacy.

d.      J.H. Saltzer and M.D. Schroeder. Part I-A of The Protection of Information in Computer Systems. Proceedings of the IEEE, 63(9):1278-1308, 1975.

e.       R. Anderson. "Why Cryptosystems Fail". Communications of the ACM, 37(11):32-40, November 1994.

3.      Discrete Logarithm & Diffie Hellman Problem

a.       D Boneh "The Decision Diffie-Hellman Problem" Algorithmic Number Theory 1998, Pages: 48-63

b.      U Maurer and S Wolf "The Relationship Between Breaking the Diffie-Hellman Protocol and Computing Discrete Logarithms" SIAM Journal on Computing 1999, Pages: 1689.

c.       A Joux and K Nguyen "Separating Decision Diffie-Hellman from Diffie-Hellman in cryptographic groups" Manuscript, January 2001

d.      P Kocher "Timing Attacks On Implementations of Diffie-Hellman, RSA, DSS, and Other Systems" Advances in Cryptology CRYPTO, Pages: 104-113

e.       Victor Shoup, Lower bounds for discrete logarithms and related problems, EUROCRYPT'97 Proceedings of the 16th annual international conference on Theory and application of cryptographic techniques

f.       Andrew Odlyzko, Discrete Logarithms: The Past and the Future, DESIGNS, CODES AND CRYPTOGRAPHY Volume 19, Numbers 2-3, 129-145, DOI: 10.1023/A:1008350005447

4.      Integer Factorization

a.       A Odlyzko "The Future of Integer Factorization"  CryptoBytes (The technical newsletter of RSA Laboratories)

b.      Richard Brent " Recent Progress and Prospects for Integer Factorisation Algorithms"  Oxford University Computing Laboratory

c.       R Brent "Some Integer Factorization Algorithms using Elliptic Curves" Arxiv preprint arXiv:1004.3366, 2010

d.      P Hao and Q Shi "Matrix Factorizations for Reversible Integer Mapping" Signal Processing, IEEE Transactions 2001, Pages 2314-2324

e.       W Mao "Verifiable Partial Sharing of Integer Factors" Selected Areas in Cryptography 1999, Pages: 631-631

5.      Cryptoanalysis

a.       E. F. Brickell and A. M. Odlyzko. Cryptanalysis: A survey of Recent Results. Proceedings of the IEEE, 76(5), 578--593, 1988

b.      Wagner, D., and B. Schneier. "Analysis of the SSL 3.0 protocol." Usenix Workshop on electronic commerce, 1996.

c.       Mitsuru Matsui,Linear Cryptanalysis Method for DES Cipher, ADVANCES IN CRYPTOLOGY EUROCRYPT , Lecture Notes in Computer Science, 1994, Volume 765/1994, 386-397, DOI: 10.1007/3-540-48285-7_33

d.      Xuejia Lai, James L. Massey and Sean Murphy, Markov Ciphers and Differential Cryptanalysis, ADVANCES IN CRYPTOLOGY , Lecture Notes in Computer Science, 1991, Volume 547/1991, 17-38, DOI: 10.1007/3-540-46416-6_2

e.       Xiaoyun Wang, Xuejia Lai, Dengguo Feng, Hui Chen and Xiuyuan Yu, Cryptanalysis of the Hash Functions MD4 and RIPEMD, ADVANCES IN CRYPTOLOGY EUROCRYPT 2005, Lecture Notes in Computer Science, 2005, Volume 3494/2005, 551, DOI: 10.1007/11426639_1

6.      Multi Party Computation

a.       R Cramer, I Damgrd and U Maurer "General secure multi-party computation from any linear secret-sharing scheme" Advances in CryptologyEUROCRYPT 2000, Pages: 316-334

b.      W Henecka, A.R. Sadeghi, T Schneider and I Wehrenberg "Tasty: Tool for Automating Secure Two-Party Computations" Proceedings of the 17th ACM conference on Computer and communications security

c.       W Du and M.J. Atallah "Secure Multi-Party Computation Problems and Their Applications: A Review and Open Problems" Proceedings of the 2001 workshop on New security paradigms, Pages: 13-22

d.      O Goldreich "Secure Multi-Party Computation" Manuscript. Preliminary version 1998

7.      Private Set Operation

a.       S Jarecki and X Liu "Efficient oblivious pseudorandom function with applications to adaptive and secure computation of set intersection" Theory of Cryptography 2009, Pages: 577-594

b.      M Freedman, K Nissim and B Pinkas "Efficient Private Matching and Set Intersection" Advances in Cryptology EUROCRYPT 2004, Pages:1-19

c.       L Kissner and D Song "Privacy-preserving set operations" Advances in Cryptology CRYPTO 2005, Pages:241-257

d.      L Kissner "Private and threshold set-intersection"

8.      Secret Sharing

a.       A De Santis, Y Desmedt, Y Frankel and M Yung "How to Share a Function Securely" Proceedings of the twenty-sixth annual ACM symposium on Theory of computing 1994, Pages:522-533

b.      A Bagherzandi, S Jarecki, N Saxena and Y Lu "Password-protected secret sharing" Proceedings of the 18th ACM conference on Computer and communications security 2011, Pages:433-444

c.       B Schoenmakers "A Simple Publicly Verifiable Secret Sharing Scheme and Its Application to Electronic Voting" Advances in Cryptology CRYPTO¡¯99, Pages: 784-

d.      T Pedersen "Non-interactive and information-theoretic secure verifiable secret sharing" Advances in Cryptology CRYPTO¡¯98 Pages: 129-140

9.      Zero Knowledge Proof

a.       A Mohr. "A Survey of Zero-Knowledge Proofs with Applications to Cryptography"

b.      Y Dodis, V Shoup and S Walfish. "Efficient constructions of composable commitments and zero-knowledge proofs" Advances in Cryptology--CRYPTO 2008

c.       D Chaum. "Zero-Knowledge Undeniable Signatures" Advances in CryptologyEUROCRYPT Pages: 458-464

d.      Uriel FeigeAmos Fiat and Adi Shamir, "Zero-knowledge proofs of identity", JOURNAL OF CRYPTOLOGY, Volume 1, Number 2, 77-94, DOI: 10.1007/BF02351717

e.       Oded Goldreich and Hugo Krawczyk, On the composition of zero-knowledge proof systems, AUTOMATA, LANGUAGES AND PROGRAMMING Lecture Notes in Computer Science, 1990, Volume 443/1990, 268-282, DOI: 10.1007/BFb0032038

10.  Key Management

a.       V Boyko, P MacKenzie and S Patel "Provably Secure Password-Authenticated Key Exchange Using Dffie-Hellman". Advances in CryptologyEurocrypt 2000.

b.      Y Kim, A Perrig and G Tsudik "Simple and Fault-Tolerant Key Agreement for Dynamic Collaborative Groups". Proceedings of the 17th ACM conference on Computer and communications security.

c.       B Libert and JJ Quisquater "Efficient revocation and threshold pairing based cryptosystems". Proceedings of the twenty-second annual symposium on Principles of distributed computing

d.      Y Zhang, F Monrose and M Reiter "The Security of Modern Password Expiration: An Algorithmic Framework and Empirical Analysis". Proceedings of the 17th ACM conference on Computer and communications security

11.  Access control

a.       R.S. Sandhu, E.J. Coyne, H.L. Feinstein, and C.E. Youman. Role-Based Access Control Models. IEEE Computer, 29(2):38--47, February 1996.

b.      M. Abadi, M. Burrows, B. Lampson, and G. Plotkin. "A calculus for access control in distributed systems". ACM Transactions on Programming Languages and Systems (TOPLAS). Volume 15, Issue 4 (September 1993), Pages: 706 - 734.

c.       D Boneh and M Franklin. "Identity-based Encryption from the Weil Pairing". Advances in CryptologyCRYPTO 2001

d.      A Sahai and B Waters. "Fuzzy Identity-based Encryption". Advances in Cryptology--EUROCRYPT 2005

e.       J Bethencourt, A Sahai and B Waters. "Ciphertext-Policy Attribute-Based Encryption". Security and Privacy, 2007. SP'07. IEEE Symposium on 2007, Pages: 321-334.

f.       V Goyal, O Pandey, A Sahai and B Waters. "Attribute-Based Encryption for Find-Grained Access Control of Encrypted Data". Proceedings of the 13th ACM conference on Computer and communications security

12.  User Authentication

a.       Neumann, Peter G. "Risks of Passwords."Communications of the ACM 37, 4 (April 1994). New York, USA: ACM Press, 1994, pp. 126.

b.      Evans, Arthur, Jr., William Kantrowitz, and Edwin Weiss. "A User Authentication Scheme not Requiring Secrecy in the Computer." Communications of the ACM17, no. 8 (August 1974). New York, USA: ACM Press, 1974, pp. 437-442.

c.       Sit, Emil, and Kevin Fu. "Web Cookies: Not Just a Privacy Risk."Communications of the ACM 44, no. 9 (September 2001). New York, USA: ACM Press, 2001, pp. 120.

d.      Lamport, Leslie. "One-Time Passwords: Password Authentication with Insecure Communication." Communications of the ACM 24, no. 11 (November 1981). New York, USA: ACM Press, 1981, pp. 770 - 772.

13.  Trust and Trust Management

a.       K. Thompson. Reflections on Trusting Trust Communication of the ACM, Vol. 27, No. 8, August 1984, pp. 761-763.

b.      M. Blaze, J. Feigenbaum, and J. Lacy. Decentralized Trust Management. In Proc. of IEEE Symposium on Security and Privacy, 1996.

14.  Digital Signature

a.       PMihir Bellare and Silviu Micali. How to sign given any trapdoor permutation.  Journal of the ACM, Vol. 39, No. 1, January 1992, pp. 214--233. http://www-cse.ucsd.edu/~mihir/crypto-research-papers.html

b.      Secure Hash-and-Sign Signatures Without the Random Oracle.  R Gennaro, S Halevi, T Rabin - EUROCRYPT, 1999. http://eprint.iacr.org/1999/013.ps

c.       M. Bellare and P. Rogaway. The exact security of digital signatures: How to sign with RSA and Rabin. Advances in Cryptology - Eurocrypt 96 Proceedings, Lecture Notes in Computer Science Vol. 1070, U. Maurer ed, Springer-Verlag, 1996. http://www-cse.ucsd.edu/~mihir/crypto-research-papers.html

d.      Security Proofs for Signature Schemes. D Pointcheval, J Stern - EUROCRYPT, 1996. http://www.di.ens.fr/~pointche/pub.php

e.       Synchronized Aggregate Signatures: New Definitions, Constructions and Applications J Ahn, M Green, S Hohenberger – CCS, 2010 http://eprint.iacr.org/2010/422.pdf

15.  TCP/IP security

a.       [B04] Steven M. Bellovin, "A Look Back at Security Problems in the TCP/IP Protocol Suite" , Proceedings of ACSAC 2004.

b.      [SB05] R. Sherwood and B. Bhattacharjee, Misbehaving TCP Receivers Can Cause Internet-Wide Congestion Collapse, Proceedings of ACM CCS'05, October 2005.

c.       [SCWA99] Stefan Savage, Neal Cardwell, David Wetherall, and Tom Anderson, TCP Congestion Control with a Misbehaving Receiver, ACM Computer Communication Review, Vol. 29, No. 5, 1999.

d.      [WSP09] N. Weaver, R. Sommer and V. Paxson, Detecting Forged TCP Reset Packets, Proceedings of NDSS'2009.

e.       K. Fall and S. Floyd, Simulation-based Comparisons of Tahoe, Reno and SACK TCP, ACM Computer Communications Review, Vol. 26, No. 3 pp. 5-21, July, 1996.

16.  DNS security

a.       [DPLL'08] David Dagon, Niels Provos, Christopher P. Lee, and Wenke Lee, Corrupted DNS Resolution Paths: The Rise of a Malicious Resolution Authority, Proceedings of NDSS'2008.

b.      [ORMZ08] David Dagon, Manos Antonakakis, Paul Vixie, Tatuya Jinmei, and Wenke Lee, Increased DNS forgery resistance through 0x20-bit encoding: security via leet queries, ACM CCS'2008.

c.       [ORMZ08] Eric Osterweil, Michael Ryan, Dan Massey, and Lixia Zhang, Quantifying the Operational Status of the DNSSEC Deployment, Proceedings of the ACM Internet Measurement Conference'2008.

d.      [BF08] Hitesh Ballani and Paul Francis, Mitigating DNS DoS Attacks, Proceedings of the ACM CCS'2008

e.       [BKKB11] Leyla Bilge, Engin Kirda, Christopher Kruegel, and Marco Balduzzi, EXPOSURE: Finding Malicious Domains Using Passive DNS Analysis, Proceedings of NDSS 2011.

f.       [DAD+09] David Dagon, et al., Recursive DNS Architectures and Vulnerability Implications, Proceedings of NDSS 2009.

17.  SPAM messages

a.       GGM+10] Guerra, Guedes, Meira, Hoepers, Chaves, and Steding-Jessen, Exploring the Spam Arms Race to Characterize Spam Evolution, Proceedings of CEAS 2010

b.      [SGK+09] Craig Shue, Minaxi Gupta, Chin Hua Kong, John Lubia and Asim Yuksel, Spamology: A Study of Spam Origins , Proceedings of CEAS 2009 .

c.       [XYAPHO08] Yinglian Xie, Fang Yu, Kannan Achan, Rina Panigrahy, Geoff Hulten, and Ivan Osipkov, Spamming Botnet: Signatures and Characteristics, Proceedings of ACM SIGCOMM 2008.

d.      [GTRZ10] C. Grier, K. Thomas, V. Paxson and M. Zhang, @spam: The Underground on 140 Characters or Less , Proceedings of ACM CCS 2010.

e.       [XYW06] Mengjun Xie, Heng Yin, and Haining Wang, An Effective Defense Against Email Spam Laundering , Proceedings of ACM CCS '2006 .

f.       [LZ06] Kang Li and Zhenyu Zhong, Fast Statistical Spam Filter by Approximate Classifications , Proceedings of ACM SIGMETRICS'2006.

18.  DoS attacks

a.       [MVS01] David Moore, Geoffrey Voelker, and Stefan Savage, Inferring Internet Denial of Service Activity, Proceedings of USENIX Security Symposium'2001.

b.      [Pax01] Vern Paxson, An Analysis of Using Reflectors for Distributed Denial-of-Service Attacks , ACM Computer Communication Review, Vol. 31, No. 3, 2001.

c.       [JKR02] Jaeyeon Jung, Balachander Krishnamurthy, and Michael Rabinovich, Flash Crowds and Denial of Service Attacks: Characterization and Implications for CDNs and Web Sites, Proceedings of the Eleventh International World Wide Web Conference.

d.      [YWA05] Xiaowei Yang, David Wetherall, and Tom Anderson, A DoS-limiting Network Architecture , Proceedings of ACM SIGCOMM'2005.

e.       [JWK03] Cheng Jin, Haining Wang, and Kang G. Shin, Hop-Count Filtering: An Effective Defense Against Spoofed DDoS Traffic , Proceedings of ACM CCS'03, October 2003.

f.       [CCS05] Angelos Stavrou and Angelos D. Keromytis, Countering Dos Attacks With Stateless Multipath Overlays , Proceedings of ACM CCS?5.

g.       [CCSW10] Huan Liu, A New Form of DOS Attack in a Cloud and Its Avoidance Mechanism , Proceedings of 2010 ACM workshop on cloud computing security workshop

19.  Botnets

a.       [RZMT06] Moheeb Abu Rajab, Jay Zarfoss, Fabian Monrose, and Andreas Terzis, A Multifaceted Approach to Understanding the Botnet Phenomenon , Proceedings of ACM IMC'2006.

b.      [DZL06] David Dagon, Cliff Zou, and Wenke Lee, Modeling Botnet Propagation Using Time Zones , Proceedings of NDSS'2006.

c.       [GPZL08] Guofei Gu, Roberto Perdisci, Junjie Zhang, and Wenke Lee, BotMiner: Clustering Analysis of Network Traffic for Protocol- and Structure-Independent Botnet Detection , Proceedings of USENIX Security'2008.

d.      [GZL08] Guofei Gu, Junjie Zhang, and Wenke Lee, BotSniffer: Detecting Botnet Command and Control Channels in Network Traffic , Proceedings of NDSS'2008.

e.       [GXWW08] Steven Gianvecchio, Mengjun Xie, Zhenyu Wu, and Haining Wang, Measurement and Classification of Humans and Bots in Internet Chat . Proceedings of USENIX Security'2008.

20.  Intrusion Detection

a.       D. Denning. "An Intrusion-Detection Model". IEEE Transactions on Software Engineering, Volume. SE-13,  Number 2, February1987, pp. 222-232.

b.      V. Paxson. "Bro: A System for Detecting Network Intruders in Real-Time", Computer Networks, 31(23-24), pp. 2435-2463, 14 Dec. 1999.

c.       B. Mukherjee, L.T. Heberlein, and K.N. Levitt, "Network Intrusion Detection", IEEE Network, vol. 8, no. 3, pp. 26-4l, 1994.

d.      [WGSZ04], Helen J. Wang, Chuanxiong Guo, Daniel R. Simon, and Alf Zugenmaier, Shield: Vulnerability Driven Network Filters for Preventing Known Vulnerability Exploits , Proceedings of ACM SIGCOMM 2004.

e.       [LXG+10] Zhichun Li, Gao Xia, Hongyu Gao, Yi Tang, Yan Chen, Bin Liu, Junchen Jiang and Yuezhou Lv, NetShield: Matching with a Large Vulnerability Signature Ruleset for High Performance Network Defense; Proceedings of ACM SIGCOMM 2010.

f.       [SP03], Robin Sommer and Vern Paxson Enhancing Byte-Level Network Intrusion Detection Signatures with Context , Proceedings of ACM CCS'2003.

g.      [GPW07] Jose M Gonzalez, Vern Paxson, and Nicholas Weaver Shunting: A Hardware/Software Architecture for Flexible, High-Performance Network Intrusion Prevention , Proceedings of ACM CCS'2007.

h.      [SAB08] Nabil Schear, David Albrecht, and Nikita Borisov, High-speed Matching of Vulnerability Signatures, Proceedings of RAID'2008.

21.  Spyware, Phishing, and Web security

a.       [MBGL06] Alexander Moshchuk, Tanya Bragin, Steven D. Gribble, and Henry M. Levy A Crawler-based Study of Spyware on the Web Proceedings of NDSS'2006.

b.      [KKBVK'06] Engin Kirda, Christopher Kruegel, Greg Banks, Giovanni Vigna, and Richard A. Kemmerer, Behavior-based Spyware Detection , Proceedings of USENIX Security'2006.

c.       [DTH06] Rachna Dhamija, J. D. Tygar and Marti Hearst, Why Phishing Works , Proceedings of ACM CHI'2006.

d.      [ZECH07] Yue Zhang, Serge Egelman, Lorrie Cranor, and Jason Hong, Phinding Phish: Evaluating Anti-Phishing Tools Proceedings of NDSS'2007.

e.       [JBSB07] Collin Jackson, Adam Barth, Andrew Bortz, Weidong Shao, and Dan Boneh, Protecting Browsers from DNS Rebinding Attacks , Proceedings of ACM CCS'2007.

f.       [LAAA06] V. T. Lam, S. Antonatos, P. Akritidis, and K. G. Anagnostakis, Puppetnets: Misusing Web Browsers as a Distributed Attack Infrastructure , Proceedings of ACM CCS'2006 .

22.  System security

a.       Beyond Stack Smashing: Recent Advances in Exploiting Buffer Overruns, Pincus, Baker.

b.      Basic Integer Overflows, blexim.

c.       A Practical Dynamic Buffer Overflow Detector, Ruwase, Lam.

d.      Traps and Pitfalls: Practical Problems in System Call Interposition Based Security Tools, Garfinkel.

e.       The underground economy: priceless, Thomas, Martin.

23.  Wireless security

a.       N. Borisov, I. Goldberg, D. Wagner. Intercepting Mobile Communications: The Insecurity of 802.11, MOBICOM 2001.

b.      R Fantacci, L Maccari, T Pecorella and F Frosali. A Secure and Performant Token-Based Authentication for Infrastructure and Mesh 802.1X Networks, INFOCOM, 2010 Proceedings IEEE

c.       S Xiao, W Gong and D Towsley, Secure Wireless Communication with Dynamic Secrets, INFOCOM, 2010 Proceedings IEEE

d.      G.M Koien and T Haslestad, Security Aspects of 3G-WLAN Interworking, Communications Magazine, IEEE 2003, Pages: 82-88

e.       J Eriksson, H Balakrishnan and S madden, Cabernet: A Content Delivery Network for Moving Vehicles, Proceedings of ACM MOBICOM 2008

f.       M.J Sharma and V Leung, Improved IP Multimedia Subsystem Authentication Mechanism for 3G-Wlan Networks, International Journal of Security and Networks 2011 - Vol. 6, No.2/3 pp. 90 - 100.

24.  Cloud Computing Security

a.       Z.N.J Peterson, M Gondree and R Beverly A Position Paper on Data Sovereignty: The Importance of Geolocating Data in the Cloud, Proceedings of the 8th USENIX conference on Networked systems design and implementation

b.      A Khajeh-Hosseini, D Greenwood and I Sommerville Cloud migration: A case study of migrating an enterprise it system to iaas Cloud Computing (CLOUD), 2010 IEEE 3rd International Conference, Pages: 450-457

c.       S Das, S nishimura, D Agrawal and A El Abbadi Live Database Migration for Elasticity in a Multitenant Database for Cloud Platforms Technical Report 2010-09, CS, UCSB

d.      M.T Goodrich, M Mitzenmacheer, O Ohrimenko and R Tamassia Oblivious RAM simulation with efficient worst-case access overhead Proceedings of the 3rd ACM workshop on Cloud computing security workshop 2011, Pages: 95-100

e.       N Cao, C Wang, M Li, K Ren and W Lou Privacy-preserving multi-keyword ranked search over encrypted cloud data INFOCOM, 2011 Proceedings IEEE

f.       D Battre, N Frejnik, S Goel, O Kao and D Warneke Inferring Network Topologies in Infrastructure as a Service Cloud Cluster, Cloud and Grid Computing (CCGrid), 2011 11th IEEE/ACM International Symposium 2011, Pages: 604-605

g.       S Bleikertz, T Gross and S Modersheim Automated verification of virtualized infrastructures Proceedings of the 3rd ACM workshop on Cloud computing security workshop 2011, Pages: 47-58

h.      T Ristenpart, E Tromer, H Shacham and S Savage Hey, you, get off of my cloud: exploring information leakage in third-party compute clouds Proceedings of the 16th ACM conference on Computer and communications security, Pages: 199-212

25.  Social Networking Security

a.       R Gross and A Acquisti Information revelation and privacy in online social networks Proceedings of the 2005 ACM workshop on Privacy in the electronic society 2005, Pages: 71-80

b.      L.A Cutillo, R Molva and T Strufe Privacy preserving social networking through decentralization Wireless On-Demand Network Systems and Services, 2009. WONS 2009. Sixth International Conference 2009, Pages: 145-152

c.       L Liu, E Yu and J Mylopoulos Security and privacy requirements analysis within a social setting Proceedings of RE 2003, Pages:151-161

d.      D Rosenblum What anyone can know: The privacy risks of social networking sites IEEE Security & Privacy 2007, Pages: 40-49

26.  Watermarking techniques

a.       Mitchell D. Swanson, Mei Kobayashi, and Ahmed H. Tewfik. Multimedia data-embedding and watermarking technologies. Proceedings of the IEEE, 86(6):1064--1087, June 1998.

b.      I. J. Cox and J.-P. M. G. Linnartz. Some general methods for tampering with watermarks. IEEE Journal on Selected Areas in Communications, 16(4):587--593, May 1998. 

c.       F. Hartung, J. K. Su, and B. Girod, "Spread spectrum watermarking: Malicious attacks and counterattacks," in Security and Watermarking of Multimedia Contents, Proc. SPIE 3657, Jan. 1999.

d.      Fabien A. P. Petitcolas. Watermarking schemes evaluation. IEEE Signal Processing, vol. 17, no. 5, pp. 58-64, September 2000.

e.       I. Cox, J. Killian, T. Leighton, and T. Shamoon. Secure spread spectrum watermarking for images, audio and video. In Proc. of the IEEE Int. Conf. on Image Processing, pages 243--246, Lausanne, Switzerland, September 1996.

f.       Collberg, C., and Thomborson, C. Software watermarking: Models and dynamic embeddings. In Conference Record of POPL '99: The 26th ACM SIGPLAN-SIGACT Symposium on Principles of Programming Languages (to appear) (Jan. 1999). 

27.  Biometrics

a.       United States General Accounting Office (GAO). "Technology Assessment: Using Biometrics in Border security." Report No. GAO-03-174, November 2002.

b.      Pankanti, S., et al. "On the Individuality of Fingerprints."

c.       M Jakobsson, E Shi, P Golle and  R Chow. "Implicit authentication for mobile devices"

d.      R Chow, M Jakobsson, R Masuoka, J Molina, Y Niu, E Shi and Z Song. "Authentication in the clouds: a framework and its application to mobile users"

e.       R Merkle Secure Communications over Insecure Channels, which was finally printed in the Communications of the ACM of April 1978 (pp. 294-299), but which was written in 1974