Page 322 - 《软件学报》2026年第6期
P. 322

陈毅飞 等: 安全可信的数据要素流通综述                                                            2641


                      System Security Symp. San Diego: Internet Society, 2023. [doi: 10.14722/ndss.2023.23041]
                 [28]   Du DD, Yang BC, Yu Y, Xia YB, Ding ZH, Zhao YW, Zhang L, Zang BY, Chen HB. SegTEE: Trusted execution environment for
                      lightweight edge devices. Chinese Journal of Computers, 2025, 48(1): 188–209 (in Chinese with English abstract). [doi: 10.11897/SP.J.
                      1016.2025.00188]
                 [29]   Khan MN, Rao AS, Camtepe S. Lightweight cryptographic protocols for IoT-constrained devices: A survey. IEEE Internet of Things
                      Journal, 2021, 8(6): 4132–4156. [doi: 10.1109/JIOT.2020.3026493]
                 [30]   Hazum A, Mana O, Wernik I, Melnykov B, Efrati C. COVID-19 goes mobile: Coronavirus malicious applications discovered. 2020.
                      https://research.checkpoint.com/2020/covid-19-goes-mobile-coronavirus-malicious-applications-discovered
                 [31]   Gavazzi A, Williams R, Kirda E, Lu L, King A, Davis A, Leek T. A study of multi-factor and risk-based authentication availability. In:
                      Proc. of the 32nd USENIX Security Symp. Anaheim: USENIX Association, 2023. 2043–2060.
                 [32]   Song  WN,  Ming  J,  Jiang  L,  Xiang  Y,  Pan  XC,  Fu  JM,  Peng  GJ.  Towards  transparent  and  stealthy  Android  OS  sandboxing  via
                      customizable container-based virtualization. In: Proc. of the 2021 ACM SIGSAC Conf. on Computer and Communications Security.
                      ACM, 2021. 2858–2874. [doi: 10.1145/3460120.3484544]
                 [33]   Hong SM, Xu L, Huang JW, Li HD, Hu HX, Gu GF. SysFlow: Toward a programmable zero trust framework for system security. IEEE
                      Trans. on Information Forensics and Security, 2023, 18: 2794–2809. [doi: 10.1109/TIFS.2023.3264152]
                 [34]   Karapanos  N,  Capkun  S.  On  the  effective  prevention  of  TLS  man-in-the-middle  attacks  in  Web  applications.  In:  Proc.  of  the  23rd
                      USENIX Security Symp. San Diego: USENIX Association, 2014. 671–686.
                 [35]   Rescorla  E.  The  transport  layer  security  (TLS)  protocol  version  1.3.  2018.  https://www.rfc-editor.org/rfc/rfc8446  [doi:  10.17487/
                      RFC8446]
                 [36]   MITRE. CVE-2014-0160. 2014. https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0160
                 [37]   Maehren M, Nieting P, Hebrok S, Merget R, Somorovsky J, Schwenk J. TLS-Anvil: Adapting combinatorial testing for TLS libraries.
                      In: Proc. of the 31st USENIX Security Symp. Boston: USENIX Association, 2022. 215–232.
                 [38]   Lenovo  caught  installing  adware  on  new  computers.  2015.  https://thenextweb.com/news/lenovo-caught-installing-adware-new-
                      computers
                 [39]   Rao V, Prema KV. Light-weight hashing method for user authentication in Internet-of-Things. Ad Hoc Networks, 2019, 89: 97–106.
                      [doi: 10.1016/j.adhoc.2019.03.003]
                 [40]   Ducas L, Kiltz E, Lepoint T, Lyubashevsky V, Schwabe P, Seiler G, Stehlé D. CRYSTALS-Dilithium: A lattice-based digital signature
                      scheme. IACR Trans. on Cryptographic Hardware and Embedded Systems, 2018, 2018(1): 238–268. [doi: 10.46586/tches.v2018.i1.238-
                      268]
                 [41]   The Guardian. Fastly says single customer triggered bug that caused mass outage. 2021. https://www.theguardian.com/technology/2021/
                      jun/09/fastly-says-single-customer-triggered-bug-that-caused-mass-outage
                 [42]   Zheng L, Zhang X, Zhang SJ, Chen XH. Research on multi-path network in cloud computing based on SCTP. In: Proc. of the 8th IEEE
                      Int’l  Conf.  on  Cyber  Security  and  Cloud  Computing  (CSCloud)/  the  7th  IEEE  Int’l  Conf.  on  Edge  Computing  and  Scalable  Cloud
                      (EdgeCom). Washington: IEEE, 2021. 30–35. [doi: 10.1109/CSCloud-EdgeCom52276.2021.00016]
                 [43]   Winder D. Microsoft security shocker as 250 million customer records exposed online. 2020. https://www.forbes.com/sites/daveywinder/
                      2020/L01/22/microsoft-security-shocker-as-250-million-customer-records-exposed-online/
                 [44]   Dauterman  E,  Corrigan-Gibbs  H,  Mazières  D.  SafetyPin:  Encrypted  backups  with  human-memorable  secrets.  In:  Proc.  of  the  14th
                      USENIX Symp. on Operating Systems Design and Implementation. Berkeley: USENIX Association, 2020. 1121–1138.
                 [45]   Li M, Chen YF, Zheng SL, Hu DH, Lal C, Conti M. Privacy-preserving navigation supporting similar queries in vehicular networks.
                      IEEE Trans. on Dependable and Secure Computing, 2022, 19(2): 1133–1148. [doi: 10.1109/TDSC.2020.3017534]
                 [46]   Li M, Zhu LH, Zhang ZJ, Lal C, Conti M, Alazab M. User-defined privacy-preserving traffic monitoring against n-by-1 jamming attack.
                      IEEE/ACM Trans. on Networking, 2022, 30(5): 2060–2073. [doi: 10.1109/TNET.2022.3157654]
                 [47]   Li M, Zhu LH, Lin XD. Privacy-preserving traffic monitoring with false report filtering via fog-assisted vehicular crowdsensing. IEEE
                      Trans. on Services Computing, 2021, 14(6): 1902–1913. [doi: 10.1109/TSC.2019.2903060]
                 [48]   Li  M,  Chen  YF,  Gao  JB,  Wu  JY,  Zhang  ZJ,  He  JL,  Zhu  LH,  Conti  M,  Lin  XD.  Accurate,  secure,  and  efficient  semi-constrained
                      navigation over encrypted city maps. IEEE Trans. on Dependable and Secure Computing, 2025, 22(3): 2642–2658. [doi: 10.1109/TDSC.
                      2024.3521396]
                 [49]   Li M, Zhang MW, Zhu LH, Zhang ZJ, Conti M, Alazab M. Decentralized and privacy-preserving smart parking with secure repetition
                      and full verifiability. IEEE Trans. on Mobile Computing, 2024, 23(12): 11635–11654. [doi: 10.1109/TMC.2024.3397687]
                 [50]   Li M, Gao JB, Zhu LH, Zhang ZJ, Lal C, Conti M. Time-restricted, verifiable, and efficient query processing over encrypted data on
   317   318   319   320   321   322   323   324   325   326   327