Page 322 - 《软件学报》2026年第6期
P. 322
陈毅飞 等: 安全可信的数据要素流通综述 2641
System Security Symp. San Diego: Internet Society, 2023. [doi: 10.14722/ndss.2023.23041]
[28] Du DD, Yang BC, Yu Y, Xia YB, Ding ZH, Zhao YW, Zhang L, Zang BY, Chen HB. SegTEE: Trusted execution environment for
lightweight edge devices. Chinese Journal of Computers, 2025, 48(1): 188–209 (in Chinese with English abstract). [doi: 10.11897/SP.J.
1016.2025.00188]
[29] Khan MN, Rao AS, Camtepe S. Lightweight cryptographic protocols for IoT-constrained devices: A survey. IEEE Internet of Things
Journal, 2021, 8(6): 4132–4156. [doi: 10.1109/JIOT.2020.3026493]
[30] Hazum A, Mana O, Wernik I, Melnykov B, Efrati C. COVID-19 goes mobile: Coronavirus malicious applications discovered. 2020.
https://research.checkpoint.com/2020/covid-19-goes-mobile-coronavirus-malicious-applications-discovered
[31] Gavazzi A, Williams R, Kirda E, Lu L, King A, Davis A, Leek T. A study of multi-factor and risk-based authentication availability. In:
Proc. of the 32nd USENIX Security Symp. Anaheim: USENIX Association, 2023. 2043–2060.
[32] Song WN, Ming J, Jiang L, Xiang Y, Pan XC, Fu JM, Peng GJ. Towards transparent and stealthy Android OS sandboxing via
customizable container-based virtualization. In: Proc. of the 2021 ACM SIGSAC Conf. on Computer and Communications Security.
ACM, 2021. 2858–2874. [doi: 10.1145/3460120.3484544]
[33] Hong SM, Xu L, Huang JW, Li HD, Hu HX, Gu GF. SysFlow: Toward a programmable zero trust framework for system security. IEEE
Trans. on Information Forensics and Security, 2023, 18: 2794–2809. [doi: 10.1109/TIFS.2023.3264152]
[34] Karapanos N, Capkun S. On the effective prevention of TLS man-in-the-middle attacks in Web applications. In: Proc. of the 23rd
USENIX Security Symp. San Diego: USENIX Association, 2014. 671–686.
[35] Rescorla E. The transport layer security (TLS) protocol version 1.3. 2018. https://www.rfc-editor.org/rfc/rfc8446 [doi: 10.17487/
RFC8446]
[36] MITRE. CVE-2014-0160. 2014. https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0160
[37] Maehren M, Nieting P, Hebrok S, Merget R, Somorovsky J, Schwenk J. TLS-Anvil: Adapting combinatorial testing for TLS libraries.
In: Proc. of the 31st USENIX Security Symp. Boston: USENIX Association, 2022. 215–232.
[38] Lenovo caught installing adware on new computers. 2015. https://thenextweb.com/news/lenovo-caught-installing-adware-new-
computers
[39] Rao V, Prema KV. Light-weight hashing method for user authentication in Internet-of-Things. Ad Hoc Networks, 2019, 89: 97–106.
[doi: 10.1016/j.adhoc.2019.03.003]
[40] Ducas L, Kiltz E, Lepoint T, Lyubashevsky V, Schwabe P, Seiler G, Stehlé D. CRYSTALS-Dilithium: A lattice-based digital signature
scheme. IACR Trans. on Cryptographic Hardware and Embedded Systems, 2018, 2018(1): 238–268. [doi: 10.46586/tches.v2018.i1.238-
268]
[41] The Guardian. Fastly says single customer triggered bug that caused mass outage. 2021. https://www.theguardian.com/technology/2021/
jun/09/fastly-says-single-customer-triggered-bug-that-caused-mass-outage
[42] Zheng L, Zhang X, Zhang SJ, Chen XH. Research on multi-path network in cloud computing based on SCTP. In: Proc. of the 8th IEEE
Int’l Conf. on Cyber Security and Cloud Computing (CSCloud)/ the 7th IEEE Int’l Conf. on Edge Computing and Scalable Cloud
(EdgeCom). Washington: IEEE, 2021. 30–35. [doi: 10.1109/CSCloud-EdgeCom52276.2021.00016]
[43] Winder D. Microsoft security shocker as 250 million customer records exposed online. 2020. https://www.forbes.com/sites/daveywinder/
2020/L01/22/microsoft-security-shocker-as-250-million-customer-records-exposed-online/
[44] Dauterman E, Corrigan-Gibbs H, Mazières D. SafetyPin: Encrypted backups with human-memorable secrets. In: Proc. of the 14th
USENIX Symp. on Operating Systems Design and Implementation. Berkeley: USENIX Association, 2020. 1121–1138.
[45] Li M, Chen YF, Zheng SL, Hu DH, Lal C, Conti M. Privacy-preserving navigation supporting similar queries in vehicular networks.
IEEE Trans. on Dependable and Secure Computing, 2022, 19(2): 1133–1148. [doi: 10.1109/TDSC.2020.3017534]
[46] Li M, Zhu LH, Zhang ZJ, Lal C, Conti M, Alazab M. User-defined privacy-preserving traffic monitoring against n-by-1 jamming attack.
IEEE/ACM Trans. on Networking, 2022, 30(5): 2060–2073. [doi: 10.1109/TNET.2022.3157654]
[47] Li M, Zhu LH, Lin XD. Privacy-preserving traffic monitoring with false report filtering via fog-assisted vehicular crowdsensing. IEEE
Trans. on Services Computing, 2021, 14(6): 1902–1913. [doi: 10.1109/TSC.2019.2903060]
[48] Li M, Chen YF, Gao JB, Wu JY, Zhang ZJ, He JL, Zhu LH, Conti M, Lin XD. Accurate, secure, and efficient semi-constrained
navigation over encrypted city maps. IEEE Trans. on Dependable and Secure Computing, 2025, 22(3): 2642–2658. [doi: 10.1109/TDSC.
2024.3521396]
[49] Li M, Zhang MW, Zhu LH, Zhang ZJ, Conti M, Alazab M. Decentralized and privacy-preserving smart parking with secure repetition
and full verifiability. IEEE Trans. on Mobile Computing, 2024, 23(12): 11635–11654. [doi: 10.1109/TMC.2024.3397687]
[50] Li M, Gao JB, Zhu LH, Zhang ZJ, Lal C, Conti M. Time-restricted, verifiable, and efficient query processing over encrypted data on

