Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Secure .gov websites use HTTPS
A lock ( ) or https:// means you’ve safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search CSRC

Use this form to search content on CSRC pages.

For a phrase search, use " "


Limit results to content tagged with of the following topics:
Showing 1426 through 1450 of 16628 matching records.
Publications IR 8431 (Final) September 20, 2022
https://csrc.nist.gov/pubs/ir/8431/final

Abstract: This report summarizes the feedback received on the work of the NIST Cybersecurity for the Internet of Things (IoT) program on IoT product cybersecurity criteria at a virtual workshop in June 2022. The purpose of this workshop was to obtain feedback on specific considerations—and techniques for addr...

Publications IR 8425 (Final) September 20, 2022
https://csrc.nist.gov/pubs/ir/8425/final

Abstract: This publication documents the consumer profile of NIST’s IoT core baseline and identifies cybersecurity capabilities commonly needed for the consumer IoT sector (i.e., IoT products for home or personal use). It can also be a starting point for small businesses to consider in the purchase of IoT pro...

Publications IR 8286C (Final) (Withdrawn) September 14, 2022

https://csrc.nist.gov/pubs/ir/8286/c/final

Abstract: This document is the third in a series that supplements NIST Interagency/Internal Report (NISTIR) 8286, Integrating Cybersecurity and Enterprise Risk Management (ERM). This series provides additional details regarding the enterprise application of cybersecurity risk information; the previous documen...

Publications Conference Paper (Final) September 11, 2022
https://csrc.nist.gov/pubs/conference/2022/09/11/new-bounds-on-the-multiplicative-complexity-of-boo/final

Conference: The 7th International Workshop on Boolean Functions and their Applications (BFA) Abstract: Multiplicative Complexity (MC) is defined as the minimum number of AND gates required to implement a function with a circuit over the basis {AND, XOR, NOT}. This complexity measure is relevant for many advanced cryptographic protocols such as fully homomorphic encryption, multi-party computation, an...

Publications Project Description (Final) August 29, 2022
https://csrc.nist.gov/pubs/pd/2022/08/29/mitigating-cyber-risk-in-telehealth-smart-home-int/final

Abstract: This project's goal is to provide HDOs with practical solutions for securing an ecosystem that incorporates consumer-owned smart home devices into an HDO-managed telehealth solution. This project will result in a freely available NIST Cybersecurity Practice Guide. While the healthcare landscape beg...

Publications Journal Article (Final) August 25, 2022
https://csrc.nist.gov/pubs/journal/2022/08/deep-learning-for-detecting-logic-flaw-exploiting/final

Journal: Journal of Computer Security Abstract: Network attacks have become a major security concern for organizations worldwide. A category of network attacks that exploit the logic (security) flaws of a few widely-deployed authentication protocols has been commonly observed in recent years. Such logic-flaw-exploiting network attacks often do no...

Publications SP 800-108 Rev. 1 (Final) (Withdrawn) August 17, 2022

https://csrc.nist.gov/pubs/sp/800/108/r1/final

Abstract: This Recommendation specifies techniques for the derivation of additional keying material from a secret key—either established through a key establishment scheme or shared through some other manner—using pseudorandom functions HMAC, CMAC, and KMAC.

Publications IR 8214B (Initial Public Draft) August 12, 2022
https://csrc.nist.gov/pubs/ir/8214/b/ipd

Abstract: This report considers threshold signature schemes interchangeable with respect to the verification mechanism of the Edwards-Curve Digital Signature Algorithm (EdDSA). Historically, EdDSA is known as a variant of Schnorr signatures, which are well-studied and suitable for efficient thresholdization,...

Publications Conference Paper (Final) August 12, 2022
https://csrc.nist.gov/pubs/conference/2022/08/12/improving-supportminors-rank-attacks-applications/final

Conference: Crypto 2022 Abstract: The Support-Minors (SM) method has opened new routes to attack multivariate schemes with rank properties that were previously impossible to exploit, as shown by the recent attacks of on the Round 3 NIST candidates G𝑒MSS and Rainbow respectively. In this paper, we study this SM approach more in dept...

Publications Conference Paper (Final) August 7, 2022
https://csrc.nist.gov/pubs/conference/2022/08/07/short-paper-measuring-the-effectiveness-of-us-gove/final

Conference: 8th Workshop on Security Information Workers (WSIW 2022) Abstract: The goal of organizational security awareness programs is to positively influence employee security behaviors. However, organizations may struggle to determine program effectiveness, often relying on training policy compliance metrics (training completion rates) rather than measuring actual impact....

Publications Conference Paper (Final) August 7, 2022
https://csrc.nist.gov/pubs/conference/2022/08/07/investigating-youths-learning-of-online-safety-and/final

Conference: 18th Symposium on Usable Privacy and Security (SOUPS 2022) Abstract: An important factor for investigating youth’s online safety, security, and privacy is to understand how and from where they learn their online behaviors and knowledge. Although research has shown that people within youths’ environments (e.g., parents) and the environments themselves (e.g., schools)...

Publications Conference Paper (Final) August 7, 2022
https://csrc.nist.gov/pubs/conference/2022/08/07/challenges-to-building-youths-online-safety-knowle/final

Conference: 18th Symposium on Usable Privacy and Security (SOUPS 2022) Abstract: This paper overviews a dyadic study of youth knowledge and understandings of online privacy and risk, and then highlights challenges that the study reveals about youth online risk taking and privacy protective measures from a family perspective. A full overview of the qualitative, dyadic study of 40...

Publications IR 8235 (Final) July 20, 2022
https://csrc.nist.gov/pubs/ir/8235/final

Abstract: Public safety officials utilizing public safety broadband networks will have access to devices, such as mobile devices, tablets, and wearables. These devices offer new ways for first responders to complete their missions but may also introduce new security vulnerabilities to their work environment....

Publications Conference Paper (Final) July 13, 2022
https://csrc.nist.gov/pubs/conference/2022/07/13/knowledge-mining-in-cybersecurity-from-attack-to-d/final

Conference: IFIP Annual Conference on Data and Applications Security and Privacy Abstract: In the fast-evolving world of Cybersecurity, an analyst often has the difficult task of responding to new threats and attack campaigns within a limited amount of time. If an analyst fails to do so, this can lead to severe consequences for the system under attack. In this work, we are motivated to ai...

Publications Conference Paper (Final) July 11, 2022
https://csrc.nist.gov/pubs/conference/2022/07/11/discovery-of-digital-forensic-dataset/final

Conference: Digital Forensics Research Conference (DFRWS) USA 2022 Abstract: The digital forensics community has generated training and reference data over the course of decades. However, significant challenges persist today in the usage pipeline for that data, from research problem formulation, through discovery of applicable shared data, through local processing and analys...

Publications IR 8413 (Final) (Withdrawn) July 5, 2022

https://csrc.nist.gov/pubs/ir/8413/final

Abstract: The National Institute of Standards and Technology is in the process of selecting publickey cryptographic algorithms through a public, competition-like process. The new publickey cryptography standards will specify additional digital signature, public-key encryption, and key-establishment algorithms...

Publications SP 800-219 (Final) (Withdrawn) June 24, 2022

https://csrc.nist.gov/pubs/sp/800/219/final

Abstract: The macOS Security Compliance Project (mSCP) provides resources that system administrators, security professionals, security policy authors, information security officers, and auditors can leverage to secure and assess macOS desktop and laptop system security in an automated way. This publication in...

Publications Conference Paper (Final) June 16, 2022
https://csrc.nist.gov/pubs/conference/2022/06/16/lessons-learned-and-suitability-of-focus-groups-in/final

Conference: 4th International Conference on HCI for Cybersecurity, Privacy, and Trust Abstract: Security information workers (SIW) are professionals who develop and use security-related data within their jobs. Qualitative methods – primarily interviews – are becoming increasingly popular in SIW research. However, focus groups are an under-utilized, but potentially valuable way to explore the w...

Publications Journal Article (Final) June 13, 2022
https://csrc.nist.gov/pubs/journal/2022/06/heterogeneous-domain-adaptation-for-multistream-cl/final

Journal: IEEE Transactions on Dependable and Secure Computing Abstract: Under a newly introduced setting of multi stream classification, two data streams are involved, which are referred to as source and target streams. The source stream continuously generates data instances from a certain domain with labels, while the target stream does the same task without labels fro...

Publications CSWP 26 (Final) June 13, 2022
https://csrc.nist.gov/pubs/cswp/26/ordered-t-way-combinations-for-testing-state-based/final

Abstract: Fault detection often depends on the specific order of inputs that establish states which eventually lead to a failure. However, beyond basic structural coverage metrics, it is often difficult to determine if code has been exercised sufficiently to ensure confidence in its functions. Measures are ne...

Publications Conference Paper (Final) June 8, 2022
https://csrc.nist.gov/pubs/conference/2022/06/08/developing-multithreaded-techniques/final

Conference: IEEE International Conference on Software Testing Verification and Validation Workshop (ICSTW 2022) Abstract: CAgen is a state-of-the-art combinatorial test generation tool that is known for its execution speed. In addition, it supports an extensive list of features such as constraint handling, higher-index arrays, and import and export of models/test sets in various different formats. It is based on the FI...

Publications IR 8403 (Final) May 26, 2022
https://csrc.nist.gov/pubs/ir/8403/final

Abstract: The rapid development and wide application of distributed network systems have made network security – especially access control and data privacy – ever more important. Blockchain technology offers features such as decentralization, high confidence, and tamper-resistance, which are advantages to sol...

Publications Journal Article (Final) May 23, 2022
https://csrc.nist.gov/pubs/journal/2022/05/pairs-of-heron-and-right-triangles/final

Journal: Publicationes Mathematicae Debrecen Abstract: A Heron triangle is one in which the side lengths and area are integers. An integral right triangle is an example of a Heron triangle. In this paper, we show that there are infinitely many pairs of integral right triangles and Heron triangles with a common area and common perimeter, continuing a lin...

Publications SP 800-140D Rev. 1 (Final) (Withdrawn) May 20, 2022

https://csrc.nist.gov/pubs/sp/800/140/d/r1/final

Abstract: The approved sensitive security parameter generation and establishment methods listed in this publication replace the ones listed in International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 19790 Annex D and ISO/IEC 24759 paragraph 6.16, within the context o...

Publications SP 800-140C Rev. 1 (Final) (Withdrawn) May 20, 2022

https://csrc.nist.gov/pubs/sp/800/140/c/r1/final

Abstract: The approved security functions listed in this publication replace the ones listed in International Organization for Standardization/International Electrotechnical Commission (ISO/IEC) 19790 Annex C and ISO/IEC 24759 6.15, within the context of the Cryptographic Module Validation Program (CMVP). As...

<< first   < previous   46     47     48     49     50     51     52     53     54     55     56     57     58     59     60     61     62     63     64     65     66     67     68     69     70  next >  last >>