SECRYPT 2006: Setúbal, Portugal
Manu Malek, Eduardo Fernández-Medina, Javier Hernando (Eds.): SECRYPT 2006, Proceedings of the International Conference on Security and Cryptography, Setúbal, Portugal, August 7-10, 2006, SECRYPT is part of ICETE - The International Joint Conference on e-Business and Telecommunications. INSTICC Press 2006 ISBN 972-8865-63-5
Invited Speakers
Keynote Lectures
David A. Marca: E-Business Strategy - Charting a Way through Uncertain Waters of Electronic Commerce.
Manu Malek: IT Security Forensics: Promises and Shortcomings.
Les Barclay: Wireless Communications, a new Emphasis for Effective Use of the Radio Spectrum.
Fernando Pereira: Multimedia Representation in MPEG Standards: Achievements and Challenges.
Jan Jürjens: Model-Based Security Engineering.
Anisse Taleb: Advances in Speech and Audio Coding and its Applications for Mobile Multimedia.
Thomas Greene: Redefining the Market Place: Only the Numbers are Different?
Tutorial
David A. Marca: Project Management for E-Business Initiatives . Project Framework, Proven Practices, Coordinated Work, Focused Sub-Teams.
Access Control and Intrusion Detection
Full Papers
Behnam Sattarzadeh, Mahdi Asadpour, Rasool Jalili: Security Enhancement for a Low Computation Cost User Authentication Scheme. 5-8
R. Ricci, Gérard Chollet, M. V. Crispino, Sabah Jassim, Jacques C. Koreman, Andrew C. Morris, M. Olivar-Dimas, Sonia Garcia-Salicetti, Pedro Soria-Rodriguez: The "SECUREPHONE" - A Mobile Phone with Biometric Authentication and e-Signature Support for Dealing Secure Transactions on the Fly. 9-16
Javier Hernando, Mireia Farrús, Pascual Ejarque, Ainara Garde, Jordi Luque: Person Verification by Fusion of Prosodic, Voice Spectral and Facial Parameters. 17-23
Najla Arfaoui, Farah Jemili, Montaceur Zaghdoud, Mohamed Ben Ahmed: Comparative Study between Bayesian Network and Possibilistic Network in Intrusion Detection. 24-31
Nathalie Dagorn: Intrusion Detection for Web Applications (Short Version). 32-39
Abdoul Karim Ganame, Julien Bourgeois, Renaud Bidou, François Spies: Evaluation of the Intrusion Detection Capabilities and Performance of a Security Operation Center. 48-55
Juan Manuel García, Tomás Navarrete, Carlos Orozco: Workload Hidden Markov Model for Anomaly Detection. 56-59
Short Papers
Marianne Azer, Sherif El-Kassas, Magdy S. El-Soudani: Using Attack Graphs in Ad Hoc Networks - For Intrusion Prediction Correlation and Detection. 63-68
Chunren Lai, Chang N. Zhang: Quantitative Analysis and Enforcement of the Principle of Least Privilege in Role-Based. 69-74
Kun Huang, Dafang Zhang: On the Self-Similarity of the 1999 DARPA/Lincoln Laboratory Evaluation Data. 75-79
Posters
Wenhua Qi: Access Control and Joint Management for Collaborative Peer Groups. 83-86
Ahmed Reda Kaced, Jean-Claude Moissinac: Protecting Adaptive Multimedia Delivery and Adaptation Using Proxy Based Approach. 87-90
Rafael Martínez-Peláez, Francisco Rico-Novella, Luis A. Zarza-López: Digital Pseudonym Identity for E-Commerce. 91-94
Network Security and Protocols
Full Papers
Gregory V. Bard: A Challenging but Feasible Blockwise-Adaptive Chosen-Plaintext Attack on SSL. 99-109
Ines Feki, Xiaoli Zheng, Mohammed Achemlal, Ahmed Serhrouchni: Internet Routing Security: An Approach to Detect and to React to Incorrect Advertisements. 110-117
Adam Wierzbicki: Trust Management without Reputation in P2P Games. 126-134
Chuan-Wen Loe, Khoongming Khoo: Protecting Cipher Block Chaining Against Adaptive Chosen Plaintext Attack. 135-140
Kan Yasuda, Kazumaro Aoki, Eiichiro Fujisaki, Atsushi Fujioka: Forward-Secure Authenticated-Encryption in Multi-Receiver Setting. 141-148
Gabriel Maciá-Fernández, Jesús E. Díaz-Verdejo, Pedro Garcia-Teodoro: On the Design of a Low-Rate DoS Attack Against Iterative Servers. 149-156
Pascal Urien, Mohamad Badra: Secure Access Modules for Identity Protection over the EAP-TLS - Smartcard Benefits for User Anonymity in Wireless Infrastructures. 157-163
Short Papers

Rehab K. El Nemr, Imane Aly Saroit Ismail, S. H. Ahmed: Action-Triggered Public-Key System for GSM Using RSA with Phone-Dependent Encryption. 175-182
Steffen Fries: Security Considerations in Current VoIP Protocols. 183-191
Ventzislav Nikov: A DoS Attack Against the Integrity-Less ESP (IPSEC). 192-199
Posters
Antonio Ruiz-Martínez, Antonio F. Gómez-Skarmeta, Óscar Cánovas Reverte: Combination of a Smartcard E-Purse and E-Coin to Make Electronic Payments on the Internet. 203-206
Stefan Rass, Mohamed Ali Sfaxi, Solange Ghernaouti-Helie: Achieving Unconditional Security in Existing Networks Using Quantum Cryptography. 207-210
Cryptographic Techniques and Key Management
Full Papers
Hongxia Jin, Jeffrey B. Lotspiech, Mario Blaum: Traitor Tracing for Subscription-Based Systems. 223-228
Carlos Serrão, Miguel Sales Dias, Jaime Delgado: Digital Object Rights Management - Interoperable Client-side DRM Middleware. 229-236

Christophe Nègre: Parallel Multiplication in F2n Using Condensed Matrix Representation. 254-259
Markku-Juhani Olavi Saarinen: Chosen-IV Statistical Attacks on eStream Ciphers. 260-266
Short Papers
Bartek Gedrojc, Kathy Cartrysse, Jan C. A. van der Lubbe: Private Bidding for Mobile Agents. 277-282
Hiroshi Toyoizumi: An Infinite Phase-Size BMAP/M/1 Queue and its Application to Secure Group Communication. 283-288


Posters
Francisco Pimenta, Carlos Serrão: Using OMA DRM 2.0 Protected Content - Ogg Vorbis Protected Audio under Symbian OS. 311-315
Luis Zarza, Josep Pegueroles, Miguel Soriano, Rafael Martínez: Design of Cryptographic Protocols by Means of Genetic Algorithms Techniques. 316-319
Christophe Nègre: Finite Field Multiplication in Lagrange Representation Using Fast Fourrier Transform. 320-323
Information Assurance
Full Papers
Domenico Introna, Francescomaria Marino: JASTEG2000 - Steganography for JPEG2000 Coded Images. 329-336
Short Papers
Igor V. Kotenko, Mikhail Stepashkin: Network Security Evaluation Based on Simulation of Malfactor's Behavior. 339-344
Posters
Chun Qi, Haitao Zhou, Bin Long: Smooth Blocks-Based Blind Watermarking Algorithm in Compressed DCT Domain. 347-350
Security in Information Systems
Full Papers

Richard Whittaker, Gonzalo Argote-Garcia, Peter J. Clarke, Raimund K. Ege: Collaboration Security for Modern Information Systems. 363-370
Zheng Zhang, Walid Rjaibi: Inter-Node Relationship Labeling: A Fine-Grained XML Access Control Implementation Using Generic Security Labels. 371-378
Manuel Sánchez, Gabriel López, Antonio F. Gómez-Skarmeta, Óscar Cánovas Reverte: Using Microsoft Office Infopath to Generate XACML Policies. 379-386
Masaki Inamura, Toshiaki Tanaka, Toshiyuki Fujisawa, Kazuto Ogawa, Takeshi Kimura: Flexible License Transfer System Using Mobile Terminal. 397-404
Short Papers
Takahito Tsukuba, Kenichiro Noguchi: Extending XML Signature and Applying it to Web Page Signing. 407-412
Kari Anne Haaland, Chunming Rong: Securing Web Services Using Identity-Based Encryption (IBE). 413-418
David G. Rosado, Carlos Gutiérrez, Eduardo Fernández-Medina, Mario Piattini: Defining Viewpoints for Security Architectural Patterns. 419-424
Carlos Gutiérrez, Eduardo Fernández-Medina, Mario Piattini: Security Risk Analysis in Web Services Systems. 425-430
Zaobin Gan, Vijay Varadharajan: Design and Implementation of a Practical Secure Distributed Healthcare Application. 431-436
Zaobin Gan, Dengwei Wei, Vijay Varadharajan: Improving Software Security Through an Integrated Approach. 437-442
Seyed Hamed Hassani, Mohammad Reza Aref: A New (t, n) Multi-Secret Sharing Scheme Based on Linear Algebra. 443-449
Sharon Nachtigal, Chris J. Mitchell: Modelling E-Business Security Using Business Processes. 459-464
Posters
Daniel Mellado, Eduardo Fernández-Medina, Mario Piattini: Secure Information Systems Development - Based on a Security Requirements Engineering Process. 467-470
Yi-qun Zhu, Jianhua Li, Quan-hai Zhang: An Extended Role-Based Access Control for Web Services. 471-474



