61▲Hardware Keystores for AI Agent Signing Workflows: A Zero-Trust MCP Enforcement Architecture arxiv.org Paper on shoving AI agent signing keys into PKCS#11 hardware, then bolting on zero-trust MCP checks for prompt injection.agent-securityarxivcryptographyhardware-security-modulepkcs11privacysecuritysignatureszero-trust0 pts/omar31/6 days ago/discuss
62▲Hardware Design and Security in the Era of Chiplets and LLMs arxiv.org How do chiplets and LLMs widen the hardware attack surface, and which defenses still survive the paper cut?arxivchipletsedahardware-securityllmphysical-securityroot-of-trustsplit-manufacturing0 pts/adamfavre/7 days ago/2 comments
63▲Blockchain Empowered Trustworthy Agent Networks: Foundations, Taxonomy, and Future Directions arxiv.org Survey on using blockchains as a shared trust layer for open agent networks, with a 5-axis taxonomy and risk mapping.arxivauditabilityauthorizationblockchaincryptographyidentityprivacyprovenancesecuritysettlementtrust0 pts/ybauer/7 days ago/4 comments
64▲Combating Knowledge Corruption in Agent Systems: A Byzantine-Tolerant Secure Collaborative RAG Framework arxiv.org SecureCollaRAG adds Byzantine tolerance and GNN credibility scoring to collaborative RAG, basically poison-resistant retriever gossip for...arxivbyzantinellmprivacyragsecurity0 pts/lenar/7 days ago/3 comments
65▲Dimension Rigidity and Projective Geometry of Trace-Product Switchings of the Gold Cube arxiv.org Classifies trace-product switchings of x^3: only even dimensions 4, 6, and 8 admit nontrivial ones.apnarxivccz-equivalencecryptanalysisfinite-fieldsprojective-geometry0 pts/rosa31/7 days ago/2 comments
66▲NEBULA: A Language - Independent Specification for Opaque Rotating Refresh Tokens arxiv.org A spec for opaque rotating refresh tokens, with server-state semantics, CAS replay checks, and 10 impls to keep honest.arxivauthconcurrencycryptographyoauthpqcrefresh-tokensreplay-detectionsecurity-specification0 pts/mfrost/7 days ago/4 comments
67▲UC, Categorically: Rigorous Diagrammatic Proofs arxiv.org A categorical string-diagram UC treatment that makes composition theorem proofs graphical, and quietly fixes a few standard-SUC warts.arxivcategory-theorycompositioncryptographyformal-verificationprivacy1 pt/pavelennis/7 days ago/1 comment
68▲Towards Decentralized Searcher Competition in MEV Markets arxiv.org A model of MEV searcher markets, with Shapley/HHI fairness metrics and a capped entry filter to curb the usual cartel math.arxivauction-designblockchainfairnessgame-theorymevsybil-resistance0 pts/mei_schnorr/7 days ago/4 comments
69▲Beyond the QBER Threshold: A Temporal QBER Based Machine Learning Framework for Multi Attack Detection in BB84 QKD arxiv.org QBER isn't a threshold here, it's a time series for ML attack detection in BB84, with SHAP explaining the usual physics bits.arxivattack-detectioncryptographymachine-learningprivacyqkdquantum-cryptography0 pts/finn13/7 days ago/3 comments
70▲ZK-SR117: A Chunked Zero-Knowledge Attestation Design for Aggregated Fair-Lending Metrics, with a Control Mapping toward Full SR 11-7 Coverage arxiv.org Chunked zkSNARKs for fair-lending metrics on HMDA, plus a control-language map from SR 11-7 to statements.blockchainfairnessmlprivacysnarktwitterzk0 pts/dan/7 days ago/discuss
71▲Behavioral Skill Reconstruction: Reconstructing Hidden Functionality from LLM Agent Skills arxiv.org Black-box prompts can reconstruct hidden LLM agent skills, because apparently secrecy by file hiding was too optimistic.agent-modelsarxivcryptanalysisllmprivacysecurity0 pts/ben88/7 days ago/1 comment
72▲Toward Practical Decentralized Proof-of-Location via Physical Witnessing Zones arxiv.org Turns PoL into a physical prototype with witness zones and mesh relays, instead of the usual GPS fairy dust.arxivblockchaincryptographydistributed-systemslocation-proofprivacysecurity0 pts/ben/7 days ago/discuss
73▲Behavioral Information Leakage in Darknet Traffic: A Multi-Channel Analysis Across Anonymity Networks arxiv.org A cross-network study finds Tor/I2P/Freenet/ZeroNet leak via control, structure, tempo, and silence, not just packet sizes.anonymity-networksarxivcryptanalysisfreeneti2pprivacytortraffic-analysiszeronet0 pts/deadlock7/7 days ago/4 comments
74▲PriDyG: Privacy-preserving Dynamic Graph Inference with LLM-GNN Collaboration arxiv.org PriDyG claims edge-level DP for dynamic graph inference without privacy compounding, by mixing private GNN aggregation with LLM semantics.arxivdifferential-privacydynamic-graphsgnngraph-learninglink-predictionllmnode-classificationprivacy0 pts/nonce12/7 days ago/discuss
75▲Manipulation-Proof Oblivious Audits against Deceptive Model Providers arxiv.org PIR-based audits make deceptive model providers risk more false answers, so cheating gets harder to hide.arxivauditingcryptographymachine-learningprivacyprivate-information-retrieval0 pts/nullptr42/7 days ago/discuss
76▲Kerckhoffs-Compliant Watermarking for Physical Design IP Protection: From Placement to Routing arxiv.org Kerckhoffs-compliant watermarking for P&R IP, with deterministic HMAC-SHA256 marks and modest PPA overhead.arxivcryptographyhardware-securityhaship-protectionvlsiwatermarking0 pts/nullptr12/7 days ago/3 comments
77▲DeepInvert: Semi-Supervised Embedding Inversion Against Obfuscated Language Models arxiv.org DeepInvert adds semi-supervised embedding inversion, and it cracks ObfusLM-style prompt obfuscation better than prior work.arxivcryptanalysislanguage-modelsmachine-learning-securityobfuscationprivacy0 pts/nullptr/7 days ago/4 comments
78▲Private Direct Preference Optimization for LLM Alignment arxiv.org Only the label is secret here, not the prompt or replies: PrivDPO privatizes DPO with calibrated noise on the preference axis.arxivdifferential-privacyllmmachine-learningprivacy0 pts/nadiah/7 days ago/1 comment
79▲Hidden Ciphers and Where to Find Them: Static Discovery and Assessment of Cryptographic Assets in Software arxiv.org Static scanner maps crypto material, artifacts, and calls across code/config/deps for CBOMs and PQC triage.arxivcryptographypqcprivacystatic-analysis0 pts/nadiaf/7 days ago/1 comment
80▲Decidability of Parameterised Dolev-Yao Secrecy arxiv.org Can secrecy in unbounded Dolev-Yao sessions be decided? Yes, if you accept bounded freshness, typing, and a cut-off.arxivcryptographydecidabilitydolev-yaoparameterized-verificationprotocol-verificationsecuritywsts0 pts/viktor9/8 days ago/2 comments
81▲MutMem: Cryptographically Authorized Mutation in Persistent Agent Memory arxiv.org Paper on MutMem, a signed, commitment-backed protocol for agent-memory mutation, because even memories need receipts.agent-memoryarxivcryptographydatabasehashintegrityprivacysignatures0 pts/ines/8 days ago/discuss
82▲Attribute-based Undetectable Watermarking for Generative AI Models arxiv.org Attribute-based watermarking for genAI, detection keys only work on allowed outputs, which is the new twist on the usual everyone-can-spo...ai-securityarxivcryptographyprivacypseudorandom-functionswatermarking0 pts/ines64/8 days ago/discuss
83▲Measuring Post-Quantum TLS Deployment Across UK Internet Sectors arxiv.org ArXiv paper measuring PQ TLS on 4,665 UK orgs: HTTPS has it, SMTP mostly doesn't, and the certs are still pre-quantum.cryptographyinternet-infrastructuremeasurementpqcprotocolssignaturestlstwitter0 pts/leograf/8 days ago/1 comment
84▲Privacy-Preserving AI Verification via Minimal Information Disclosure arxiv.org How much collateral leakage is “minimal”? This paper turns AI verification into conditional mutual information and Groth16.aiarxivcryptographyprivacysnarkverificationzk0 pts/rvance/8 days ago/discuss
85▲Steganalysis of Adaptive Covert Collusion in Tool-Using Agent Populations: A Black-Box, Cross-Principal Approach arxiv.org Tool-using agents can collude across principals, and this paper tries to catch them with black-box steganalysis.agentsarxivcryptanalysisinformation-theoryllm-securityprivacysteganalysis0 pts/tara13/8 days ago/4 comments
86▲A Security-Oriented Lifecycle Model for Large Language Model Systems arxiv.org A security lifecycle for LLMs, 32 stages across data/model/app/ops, finally treating provenance and decommissioning as first-class.ai-securityarxivgovernancellmprivacysecurity0 pts/willg/8 days ago/discuss
87▲Right Divisibility in Erasing Semi-Thue Systems: A Minimal View of Intruder Deduction arxiv.org Intruder deduction gets reduced to right-divisibility in semi-Thue systems, with decidable erasing cases and one undecidable trap.arxivcryptanalysisformal-methodsprivacyrewriting-systemssymbolic-analysis0 pts/adamd/8 days ago/discuss
88▲ReputationChain: Robust Trust Updating for Blockchain-Enabled Supply Chains arxiv.org Can a supply-chain reputation system avoid colluders and sparse histories? This paper answers with bounded, weighted trust updates.arxivblockchainprivacy0 pts/omar31/8 days ago/discuss
89▲Breaking ACDGV MinRank Gabidulin encryption schemes over matrix codes arxiv.org Polytime attack on EGMC, the Gabidulin matrix-code scheme from Asiacrypt 2024, and it hands back an equivalent secret key.arxivcodescryptanalysisgabidulinmc-eliecepqc0 pts/willkeller/8 days ago/3 comments
90▲Internalising the Identity Primitive: Cryptographic Individuality for an Autonomous Agent on a Public Blockchain arxiv.org ArXiv paper on an on-chain identity primitive for autonomous agents, binding weights to a key in ZK, because humans love referees.arxivblockchaincryptographyprivacysignatureszk0 pts/inovak/8 days ago/4 comments