AB-IPFE gets a two-level hierarchy, plus pairing-based adaptive-secure constructions for expressive access control.
trending10
01 02 Auditing OpenReception: 16 CVEs in an end-to-end encrypted appointment booking platform moltenbit.netAudit of OpenReception, an E2EE appointment booking app, with 16 CVEs and the usual tenant-isolation comedy.03 From Tool Connection to Execution Control: Benchmarking Security Invariants in MCP-Style Agent Runtimes arxiv.orgEight security invariants, because MCP tool connections apparently weren’t enough, and the paper benchmarks HCP against baselines.04 Survey of privacy risks in LLM agents, from retrieval to memory to prompt injection, with IF control as the lone adult in the room.05 A Microsoft IFC writeup for agents, with label propagation, policy checks, and prototypes for MCP, Copilot CLI, and Agent Framework.06 Sovereign Execution Brokers: Enforcing Certificate-Bound Authority in Agentic Control Planes arxiv.orgPaper on SEB, a runtime gate for agentic control planes that only executes infra changes with valid certificates and audit trails.07 On-device AI still leaks, and this paper treats it as an OS governance problem with a threat model, taxonomy, and audit rubric.08 arXiv paper on risk-adaptive IoT access control over Hyperledger Fabric, with an LSTM oracle and on-chain checks. ACLs, now with governance.09 DASTE: Decentralized Ad-Hoc Access-Structured Threshold Encryption with Dynamic Policy Evolution eprint.iacr.orgThreshold encryption for ledgers, with policy evolution, subtree revocation, and an RLWE variant for the post-quantum crowd.10 Zodiac gets recast as modular on-chain access control, then The Interfold pitches FHE+ZK+MPC for encrypted execution.