Bruce Schneier

 
 

Crypto Bibliography

A. Ort, R. Aßmann, G. Bleumer, M. Böttger, D. Fox, A. Pfitzmann, B. Pfitzmann, and M. Waidner, Schutz in verteilten Systemen durch Kryptologie - Ein Praktikum im Informatik-Hauptstudium; Datenschutz und Datensicherung DuD 16/11 (1992) 571-579. [.ps.gz]

M. Abadi, Secrecy by Typing in Security Protocols. Journal of the ACM. [.ps]

M. Abadi, C. Fournet, and G. Gonthier, Secure Communications Processing for Distributed Languages, Proceedings of the 1999 IEEE Symposium on Security and Privacy (May 1999), 74-88. [.ps]

M. Abadi, T. Mark, A. Lomas, and R. Needham, Strengthening Passwords; SRC Technical Note 1997-033 (September/December 1997). [.ps]

M. Abadi, Security Protocols and Specifications, Foundations of Software Science and Computation Structures: Second International Conference, FOSSACS '99 (March 1999), 1-13. [.ps]

M. Abadi, C. Fournet, and G. Gonthier, Secure Implementation of Channel Abstractions, Proceedings of the Thirteenth Annual IEEE Symposium on Logic in Computer Science (June 1998), 105-116. [.ps]

M. Abadi, Protection in Programming-Language Translations, Automata, Languages and Programming: 25th International Colloquium, ICALP'98 (July 1998), 868-883. Also appeared as SRC Research Report 154 (April 1998).

M. Abadi, M. Burrows, and R. Needham A Logic of Authentication, Proceedings of the Royal Society, Series A, 426, 1871 (December 1989), 233-271. Also appeared as SRC Research Report 39 and, in a shortened form, in ACM Transactions on Computer Systems 8, 1 (February 1990), 18-36. [.ps]

M. Abadi, L. van Doorn, M. Burrows, and E. Wobber, Secure Network Objects, Proceedings of the 1996 IEEE Symposium on Security and Privacy (May 1996), 211-221. [.ps]

M. Abadi, M. Burrows, C. Kaufman, and B. Lampson, Authentication and Delegation with Smart-Cards, Science of Computer Programming 21, 2 (October 1993), 93-113. [.ps]

M. Abadi and R. Needham, Prudent Engineering Practice for Cryptographic Protocols, IEEE Transactions on Software Engineering 22, 1 (January 1996), 6-15. [.ps]

M. Abadi, Explicit Communication Revisited: Two New Attacks on Authentication Protocols, IEEE Transactions on Software Engineering 23, 3 (March 1997), 185-186. [.ps]

M. Abadi, A. Birrell, R. Stata, and E. Wobber, Secure Web Tunneling, Proceedings of the Seventh International World Wide Web Conference. Computer Networks and ISDN Systems 30, 1-7 (April 1998), 531-539.

M. Abadi, S. Glassman, M. Manasse, P. Gauthier, and P. Sobalvarro, The Millicent Protocol for Inexpensive Electronic Commerce, World Wide Web Journal -- Fourth International World Wide Web Conference Proceedings, O'Reilly & Associates, Inc. (December 1995), 603-618.

M. Abadi and A. Gordon, A Calculus for Cryptographic Protocols: The Spi Calculus, SRC Research Report 149 (January 1998). [.ps]

M. Abadi, Secrecy by Typing in Security Protocols, Theoretical Aspects of Computer Software, Springer-Verlag (September 1997), 611-638. [.ps]

M. Abadi, M. Burrows, and R. Needham, The Scope of a Logic of Authentication, Distributed Computing and Cryptography: Proceedings of a DIMACS Workshop (October 1989), 119-126. Also appeared as appendix to SRC Research Report 39. [.ps]

M. Abadi and A. Gordon, A Bisimulation Method for Cryptographic Protocols, Programming Languages and Systems: 7th European Symposium on Programming, ESOP '98 (April 1998), 12-26. [.ps]

M. Abadi, E. Allender, A. Broder, J. Feigenbaum, and L. Hemachandra, On Generating Solved Instances of Computational Problems, Advances in Cryptology -- CRYPTO '88, Springer-Verlag (August 1988), 297-310. [.ps]

M. Abadi, On SDSI's Linked Local Name Spaces, Proceedings of the 10th IEEE Computer Security Foundations Workshop (June 1997), 98-108. [.ps]

M. Abadi, M. Burrows, B. Lampson, and G. Plotkin, A Calculus for Access Control in Distributed Systems, ACM Transactions on Programming Languages and Systems 15, 4 (September 1993), 706-734. (Also appeared as SRC Research Report 70.) [.ps]

M. Abadi, On SDSI's Linked Local Name Spaces, Journal of Computer Security 6, 1-2 (1998), 3-21. [.ps]

M. Abadi and A. Gordon, A Bisimulation Method for Cryptographic Protocols, Nordic Journal of Computing 5, 4 (Winter 1998), 267-303. [.ps]

M. Abadi and J. Feigenbaum, Secure Circuit Evaluation: A Protocol Based on Hiding Information from an Oracle Journal of Cryptology 2, 1 (May 1990), 1-12. [.ps]

M. Abadi, J. Feigenbaum, and J. Kilian, On Hiding Information from an Oracle Journal of Computer and System Sciences 39, 1 (August 1989), 21-50. [.ps]

M. Abadi and M. Tuttle, A Semantics for a Logic of Authentication, Proceedings of the Tenth Annual ACM Symposium on Principles of Distributed Computing (August 1991), 201-216. [.ps]

M. Abadi, B. Lampson, M. Burrows, and E. Wobber, Authentication in Distributed Systems: Theory and Practice, ACM Transactions on Computer Systems 10, 4 (November 1992), 265-310. (Also appeared as SRC Research Report 83.) [.pdf]

M. Abadi, E. Wobber, M. Burrows, and B. Lampson, Authentication in the Taos Operating System, ACM Transactions on Computer Systems 12, 1 (February 1994), 3-32. (Also appeared as SRC Research Report 117.) [.ps]

M. Abadi, Two Facets of Authentication, Proceedings of the 11th IEEE Computer Security Foundations Workshop (June 1998), 25-32. Also appeared as SRC Technical Note 1998-007 (March 1998).

M. Abdalla, Y. Shavitt, and A. Wool, Towards Making Broadcast Encryption Practical [.ps.gz], Financial Cryptography '99, Anguilla, BWI, February 1999. [.ps.gz]

M. Abdalla, W. Cirne, L. Franklin, A. Sterrett, and K. Marzullo, Chimichanga: A Fault-tolerant Asynchronous Communication Infrastructure for Mobile Agents, March 1998. [.pdf] [.ps.gz]

M. Abdalla, W. Cirne, L. Franklin, and A. Tabbara, Security Issues in Agent Based Computing, in Proc. of the 15th Brazilian Symposium on Computer Networks, Campinas, SP, May 1997. [.pdf]

M. Abdalla, M. Bellare, and P. Rogaway, DHAES: An Encryption Scheme Based on the Diffie-Hellman Problem [.ps.gz] [.ps] [.pdf], Contributions to P1363, September 1998. [.ps]

M. Abdalla and O. Duarte, Analysis of CAC Mechanisms for ATM Networks [.ps.gz], in Proc. of the 15th Brazilian Telecommunications Symposium, Recife, PE, September 1997. Portuguese. [.pdf] [.ps.gz]

H. Abelson, R. Anderson, S. Bellovin, J. Benaloh, M. Blaze, W. Diffie, J. Gilmore, P. Neumann, R. Rivest, J. Schiller, and B. Schneier, The Risks of Key Recovery, Key Escrow, and Trusted Third-Party Encryption [PDF]. An earlier version appeared in World Wide Web Journal, v.2, n.3, 1997, pp. 241-257.

C. Adams, H. Heys, S. Tavares, and M. Wiener, An Analysis of the CAST-256 Cipher, Proceedings of IEEE Canadian Conference on Electrical and Computer Engineering, 1999. [.ps]

R. Rivest, A. Shamir, and L. Adleman, A Method for Obtaining Digital Signatures and Public-Key Cryptosystems Communications of the ACM 21,2 (Feb. 1978), 120--126. [.ps]

I. Agi and L. Gong, An Empirical Study of Secure MPEG Video Transmissions, Proceedings of the Internet Society Symposium on Network and Distributed System Security, pp.137--144, San Diego, California, February, 1996.

W. Aiello, M. Bellare, G. Di Crescenzo, and R. Venkatesan, Security amplification by composition: The case of doubly-iterated, ideal ciphers, Extended abstract in Advances in Cryptology -- Crypto 98 Proceedings, Lecture Notes in Computer Science v. 1462, H. Krawczyk ed, Springer-Verlag, 1998. Full version available.

M. Abadi, E. Allender, A. Broder, J. Feigenbaum, and L. Hemachandra, On Generating Solved Instances of Computational Problems, Advances in Cryptology -- CRYPTO '88, Springer-Verlag (August 1988), 297-310. [.ps]

N. Alon, O. Goldreich, J. Hastad, and R. Peralta, Simple Constructions of Almost $k$-wise Independent Random Variables; June 1992. [.ps] Addendum: [.ps]

Y. Amir, G. Ateniese, D. Hasse, Y. Kim, C. Nita-Rotaru, T. Schlossnagle, J. Schultz, J. Stanton, and G. Tsudik, Secure Group Communication in Asynchronous Networks with Failures: Integration and Experiments, 2000 International Conference on Distributed Computing Systems. [.pdf]

P. Ammann, S. Jajodia, and I. Ray, P. Ammann, S. Jajodia, and I. Ray, ``Ensuring atomicity of multilevel transactions, Proc. IEEE Symp. on Research in Security and Privacy, Oakland, Calif., May 1996, pp. 74-84. [.ps]

P. Ammann, S. Jajodia, D. McCollum, and b. Blaustein, Surviving information warfare attacks on databases, Proc. IEEE Symp. on Research in Security and Privacy, Oakland, Calif., May 1997, pages 31-42. [.ps]

J. An and M. Bellare, Constructing VIL-MACs from FIL-MACs: Message authentication under weakened assumptions, Advances in Cryptology - Crypto 99 Proceedings, LNCS v. 1666, M. Wiener ed., Springer-Verlag, 1999. Full version available.

S. Park, T. Kim, Y. An, and D. Won, A Provably Entrusted Undeniable Signature, Proc. of IEEE SICON/ICIE'95, IEEE Singapore International Conference on Network/International Conference on Information Engineering, 1995, pp.644--648. [.ps]

R. Anderson, Privacy and freedom issues

R. Anderson, V. Matyas, and F. Petitcolas, Secure Books: Protecting the Secure Distribution of Knowledge, Security Protocols Workshop, 1997.

R. Anderson and E. Biham, Tiger: A Fast New Hash Function, Fast Software Encryption 3, 1996, LNCS 1039 [.ps.gz]

R. Anderson, Robustness of cryptographic protocols

R. Anderson, Editing `Computer and Communications Security Reviews'

R. Anderson, Analysis and design of cryptographic algorithms

R. Anderson, Security of clinical information systems

R. Anderson, S. Vaudenay, B. Preneel, and K. Nyberg, The Newton Channel, Info Hiding 96, pp. 39-48. [.ps.Z] [.ps.gz]

R. Anderson, Why Cryptosystems Fail, Communications of the ACM v. 37 no. 11 (Nov 94) pp. 32-40. [.ps.gz]

R. Anderson and M. Kuhn, Tamper Resistance - a Cautionary Note, The Second USENIX Workshop on Electronic Commerce Proceedings, Oakland, California, November 18-21, 1996, pp. 1-11, ISBN 1-880446-83-9. [.pdf]

R. Anderson, How to Cheat at the Lottery (or, Massively Parallel Requirements Engineering),

R. Anderson and R. Needham, Robustness Principles for Public Key Protocols, in Advances in Cryptology - CRYPTO 95, Springer LNCS v. 963, pp. 236-247. [.ps.gz]

R. Anderson and M. Roe, The GCHQ Protocol and its Problems, Eurocrypt 97. [.ps.Z] [.ps.gz]

R. Anderson and M. Kuhn, Low Cost Attacks on Tamper Resistant Devices, Security Protocols, 5th International Workshop, Paris, France, April 7-9, 1997, Proceedings, Springer-Verlag, LNCS 1361, pp. 125-136. [.pdf]

H. Abelson, R. Anderson, S. Bellovin, J. Benaloh, M. Blaze, W. Diffie, J. Gilmore, P. Neumann, R. Rivest, J. Schiller, and B. Schneier, The Risks of Key Recovery, Key Escrow, and Trusted Third-Party Encryption [PDF]. An earlier version appeared in World Wide Web Journal, v.2, n.3, 1997, pp. 241-257.

F. Stajano and R. Anderson, The Resurrecting Duckling: Security Issues for Ad-hoc Wireless Networks, 7th International Workshop on Security Protocols, Cambridge, UK, April 1999, Springer LNCS vol 1796, pp 172-182.

R. Anderson, V. Matyas, and F. Petitcolas, The Eternal Resource Locator: An Alternative Means of Establishing Trust on the World Wide Web, 3rd USENIX workshop on electronic commerce, ISBN 1-880-446-97-9, pp. 141-153. [.pdf]

R. Anderson and R. Needham, Programming Satan's Computer, Computer Science Today, LNCS 1000, Springer-Verlag, 1995, pp 426-441. [.ps.gz]

R. Anderson and S. Bezuidenhoudt, On the Reliability of Electronic Payment Systems, IEEE Transactions on Software Engineering v. 22 no. 5 (May 96) pp 294-301. [.ps.gz]

R. Anderson, C. Manifavas, and C. Sutherland, NetCard - A Practical Electronic Cash Scheme, 1996 Cambridge Workshop on Security Protocols. [.ps.gz]

R. Anderson, B. Crispo, C. Manifavas, V. Matyas, and F. Petitcolas, The Global Trust Register, Datasem '98, pp 219-241, Brno, Czech Republic, October 1998.

R. Anderson, Crypto in Europe - Markets, Law and Policy, Cryptography: Policy and Algorithms, Springer LNCS v 1029 pp 75-89. [.ps.Z]

F. Stajano and R. Anderson, The Grenade Timer: Fortifying the Watchdog Timer Against Malicious Mobile Code, 7th International Workshop on Mobile Multimedia Communications (MoMuC 2000), Waseda, Tokyo, Japan. [.pdf]

R. Anderson, The Eternity Service, Pragocrypt '96.

F. Petitcolas, R. Anderson, and M. Kuhn, Information Hiding - A Survey, Proceedings of the IEEE, Vol. 87, No. 7, July 1999, pp. 1062-1078. [.pdf]

R. Anderson, Stretching the Limits of Steganography, Info Hiding 96, pp. 39-48. [.ps.gz]

F. Stajano and R. Anderson, The Cocaine Auction Protocol: On the Power of Anonymous Broadcast, Third International Workshop on Information Hiding, Dresden, Germany, 1999.

R. Anderson, R. Needham, and A. Shamir, The Steganographic File System. [.ps.gz]

R. Anderson, V. Matyas, F. Petitcolas, I. Buchan, and R. Hanka, On the Importance of Trusted Distribution and Authentic Channels for the Distribution of Medical Knowledge,

R. Anderson, F. Bergadano, B. Crispo, J. Lee, C. Manifavas, and R. Needham, A New Family of Authentication Protocols, Operating Systems Review, vol. 32, n. 4, pp. 9-20, October 1998, ACM Press. [.ps.gz]

R. Anderson and F. Peticolas, On the Limits of Steganography, IEEE Journal on Selected Areas in Communications (J-SAC), Special Issue on Copyright & Privacy Protection, vol. 16 no. 4, pp. 474-481, May 1998.

R. Anderson, Reliability of security systems.

F. Petitcolas, R. Anderson, and M. Kuhn, Attacks on Copyright Marking Systems, presented at the Second Workshop on Information Hiding, Portland, Oregon, USA, 14--17 April, 1998. [.pdf]

M. Kuhn and R. Anderson, Soft Tempest: Hidden Data Transmission Using Electromagnetic Emanations, Second Workshop on Information Hiding, Portland, Oregon, USA, Apr. 15-17, 1998. [.pdf]

R. Anderson, Tempest and other recent work.

R. Anderson and E. Biham, Two Practical and Provably Secure Block Ciphers: BEAR and LION, CS 875, December 1995; Fast Software Encryption 3, 1996, LNCS 1039. [.ps.gz]

R. Anderson, E. Biham, and L. Knudsen, Serpent and Smartcards, CARDIS '98.

V. Anupam and A. Mayer, Security of Web Browser Scripting Languages: Vulnerabilities, Attacks, and Remedies, Proc. 7th USENIX Security Symposium, 1998. [.pdf]

V. Anupam, A. Mayer, K. Nissim, B. Pinkas, and M. Reiter On the Security of Pay-per-Click and Other Web Advertising Schemes, Proc. 8th World Wide Web Conference, 1999.

K. Aoki and H. Lipmaa, Fast Implementations of AES Candidates, AES3 conference, New York City, USA, 13--14 April 2000.

P. Ashley, M. Vandenwauver, and J. Claessens, A Comparison of SESAME and SSL for Intranet and Internet Security, IFIP WG 11.1 & 11.2 Information Security Management and Small Systems Security, 1998, pp 60-69. [.ps.gz]

G. Gaskell, P. Ashley, M. Vandenwauver, and J. Claessens, Intranet Security Technologies - SESAME or SSL?, Proceedings of the Australian Unix and Open Systems User Group National Conference (AUUG98), 1998, pp. 133-142. [.ps.gz]

P. Ashley, M. Vandenwauver, and J. Claessens, Using SESAME to Secure Web Based Applications on an Intranet, Secure Information Networks, Proceedings of the IFIP TC6/TC11 Joint Working Conference on Communications and Multimedia Security (CMS'99). Leuven, Belgium, September 20-21, 1999. pp 303-317. [.ps.gz]

N. Asokan, V. Shoup, and M. Waidner, Asynchronous Protocols for Optimistic Fair Exchange, Proceedings of the IEEE Symposium on Research in Security and Privacy, IEEE Computer Society Press, pp. 86-99. Corrected version. [.ps.gz]

N. Asokan, G. Tsudik, and M. Waidner, Server-Supported Signatures, Journal of Computer Security, 5(1), pp 91-108, 1997. [.ps.gz]

N. Asokan, D. Samfat, and R. Molva, Untraceability in Mobile Networks, Proceedings of the ACM International Conference on Mobile Computing and Networking, Berkeley, Nov. 1995. [.ps.gz]
An improved version is also available. [.ps.gz]

N. Asokan, V. Shoup, and M. Waidner, Optimistic fair exchange of digital signatures, IBM Research Report RZ 2973, 1997. This is the full length version of the extended abstract in Proc. Eurocrypt '98. [.ps]

N. Asokan, Anonymity in a Mobile Computing Environment, Proceedings of the Workshop on Mobile Computing Systems and Applications, Santa Cruz, Dec. 1994. [.ps.gz]

G. Ateniese, D. Hasse, O. Chevassut, Y. Kim, and G. Tsudik, The Design of a Group Key Agreement API, IBM Research Report. Also in DARPA Information Survivability Conference And Exposition (DISCEX) 2000.

A. De Santis, G. Ateniese, C. Blundo, and D. R. Stinson, Visual Cryptography for General Access Structures Information and Computation. [.ps]

G. Ateniese, C. Blundo, A. De Santis, and D. Stinson, Visual cryptography for general access structures; Information and Computation 129 (1996), 86-106. [.ps]

G. Ateniese, C. Blundo, A. De Santis, and D. Stinson, Extended capabilities for visual cryptography; Submitted to Theoretical Computer Science. [.ps]

Y. Amir, G. Ateniese, D. Hasse, Y. Kim, C. Nita-Rotaru, T. Schlossnagle, J. Schultz, J. Stanton, and G. Tsudik, Secure Group Communication in Asynchronous Networks with Failures: Integration and Experiments, 2000 International Conference on Distributed Computing Systems. [.pdf]

G. Ateniese, M. Steiner, and G. Tsudik, Authenticated Group Key Agreement and Related Issues, in Fifth ACM Conference on Computer and Communications Security, San Francisco, CA, November 1998. [.ps.gz]

A. De Santis, G. Ateniese, C. Blundo, and D. R. Stinson, Constructions and Bounds for Visual Cryptography, ICALP '96. [.ps]

M. Atici, D. Stinson, and R. Wei, A new practical algorithm for the construction of a perfect hash function; Submitted to Algorithmica. [.ps]

M. Atici, S. Magliveras, D. Stinson, and W.-D. Wei, Some recursive constructions for perfect hash families; Journal of Combinatorial Designs 4 (1996), 353-363. [.ps]

M. Atici and D. Stinson, Universal hashing and multiple authentication; Lecture Notes in Computer Science 1109 (1996), 16-30 (Advances in Cryptology - CRYPTO '96). [.ps]

D. Atkins, M. Graff, A. Lenstra, and P. Leyland, The Magic Words are Squeamish Ossifrage (extended abstract), Asiacrypt 1994. [.ps]

J. Schiller, D. Atkins, Scaling the Web of Trust: Combining Kerberos and PGP to Provide Large Scale Authentication [.txt], Usenix 1995 Technical Conference Proceedings, Jan. 16-20, 1995. [.ps] [.txt]

T. Aura, Strategies against replay attacks, Proceedings of 10th IEEE Computer Security Foundations Workshop, Rockport MA, June 1997, pp. 59-68.

T. Aura, Modelling the Needham-Schröder authentication protocol with high level Petri nets, Digital Systems Laboratory Report B14, September 1995.

T. Aura, P. Koponen, and J. Räsänen, Delegation-based access control for intelligent network services, Proceedings of ECOOP Workshop on Distributed Object Security, Brussels, Belgium, July 1998. [.ps]

T. Aura, Practical invisibility in digital communication, Proceedings of the Workshop on Information Hiding, Cambridge, England, May 1996, pp. 265-278, Lecture Notes in Computer Science 1174, Springer Verlag 1996.

B. Awerbuch, O. Goldreich, D. Peleg, and R. Vainish, A Trade-off between Information and Communication in Broadcast Protocols; June 1989. [.ps]

Schneier.com is a personal website. Opinions expressed are not necessarily those of BT Counterpane.