NordSec 2009 The 14th Nordic Conference on Secure IT Systems
14-16 October 2009
Oslo, Norway

Program NordSec 2009

Nordic Security Day - Wednesday 14 October 2009
TimeSessionSpeaker
08:30 - 09:00 Arrival Registration
09:00 - 09:15 NordSec 2009 opening address Audun Jøsang
Conference Chair
09:15 - 10:15 Global initiatives for online identity Drummond Reed
Executive Director
Information Card Foundation
10:15 - 10:55 STORK and pan-European Id Management Arvid Welin
Swedish Tax Agency
10:55 - 11:10 Coffee Break
11:10 - 11:50 Id theft and the use of biometrics Magnar Aukrust
Ministry of Justice and the Police
11:50 - 12:30 The SIM card as a Secure Basis for ID - With an Open and Global Outlook Tor-Hjalmar Johannessen
Telenor Research
12:30 - 13:30 Lunch
13:30 - 14:30 Privacy in the Internet Age M. Peter Hustinx
Supervisor
EDPS
14:30 - 15:00 Privacy risks in Web 2.0 Roar Thon
Norwegian National Security Authority
15:00 - 15:15 Coffee Break
15:15 - 15:45 e-Voting at Norwegian Municipal Elections Christian Bull
Ministry of Local Government and Regional Development
15:45 - 16:15 Information self-determination entails information self-awareness Caspar Bowden
Microsoft Europe
16:15 - 16:45 Risks of exchanging identity information Åsmund Skomedal
Norwegian Computing Center
16:45 - 17:00 Coffee Break
17:00 - 18:00 Panel Debate:
Identity management: A threat or an opportunity for privacy?
Moderator: Prof. Simone Fischer-Hübner
19:00 - 21:00 Nordic Security Day Reception at Telenor Expo, Fornebu

 

Thursday 15 October 2009
TimeSession/TalkSpeaker/Authors
08:15 - 08:30 Arrival Registration
08:30 - 09:15
Invited Keynote
Privacy-enhancing Id Management, Challenges for the Future Prof. Simone Fischer-Hübner
Karlstad University
09:15 - 09:30 Coffee Break
09:30 - 11:30 Session 1: Anonymity and Privacy
Chair: Jason Crampton.
On the Effectiveness of Privacy Breach Disclosure Legislation in Europe: Empirical Evidence from the US Stock Market Jan Muntermann and Heiko Roßnagel
Facilitating the Adoption of Tor by Focusing on a Promising Target Group Heiko Roßnagel, Jan Zibuschka, Lexi Pimenides and Thomas Deselaers
A Parallelism-Based Approach to Network Anonymization Igor Margasinski
Security Usability of Petname Systems Md. Sadek Ferdous, Audun Jøsang, Kuldeep Singh and Ravishankar Borgaonkar
11:30 - 11:45 Coffee Break
11:45 - 12:30 Session 2: Theory and Cryptography (Short papers)
Chair: Stig F. Mjølsnes.
Effcient Collusion Resistant Group Key Establishment Using Fractional Public Keys Sigurd Eskeland
A relational logic approach for representing secrecy models and detecting their inconsistencies Waël Hassan
IBE Based Group Key Agreement Protocols Harri Forsgren, Kaj Grahn2, Jonny Karlsson, Timo Karvi1, and Göran Pulkkis
12:30 - 13:30 Lunch
13:30 - 15:00 Session 3: Modelling and Design
Chair: Christian Damsgaard Jensen.
An analysis of Widget security Karsten Peder Holth, Do van Thuan, Ivar Jørstad and Do van Thanh
Trade-Offs in Cryptographic Implementations of Temporal Access Control Jason Crampton
Blunting Differential Attacks on PIN Processing APIs Riccardo Focardi, Flaminia L. Luccio and Graham Steel
15:00 - 15:15 Coffee Break
15:15 - 16:45 Session 4: Network Layer Security
Chair: Tuomas Aura.
Towards Modelling Information Security with Key-Challenge Petri Nets Mikko Kiviharju, Teijo Venäläinen and Suna Kinnunen
Characterising Anomalous Events using Change - Point Correlation on Unsolicited Network Traffic Ejaz Ahmed, Andrew Clark and George Mohay
An Improved Attack on TKIP Finn M. Halvorsen, Olav Haugen, Martin Eian and Stig F. Mjølsnes
16:45 - 18:00 Student poster presentations and voting by delegates
19:00 - 22:00 Conference Banquet Dinner at Holmenkollen Restaurant
Presentation of best-poster award

 

Friday 16 October 2009
TimeSessionSpeaker
08:15 - 08:30 Arrival Registration
08:30 - 09:15
Invited Keynote
Identity Management on the Internet: Opportunities and challenges for mobile operators Prof. Do van Thanh
Senior Research Scientist
Telenor R&I - NTNU
09:15 - 09:30 Coffee Break
09:30 - 11:30 Session 5: Security for Mobile Users
Chair: Peeter Laud.
ContikiSec: A Secure Network Layer for Wireless Sensor Networks under the Contiki Operating System Lander Casado and Philippas Tsigas
A Mechanism for Identity Delegation at Authentication Level Naveed Ahmed and Christian D. Jensen
Introducing SIM-Based Security Tokens as Enabling Technology for Mobile Real-Time Services Heiko Roßnagel and Jan Muntermann
Towards True Random Number Generation in Mobile Environments Jan Bouda, Jan Krhovjak, Vashek Matyas and Petr Svenda
11:30 - 11:45 Coffee Break
11:45 - 12:30 Session 6: Attack Models (Short papers)
Chair: Andrew Clark
Organized Crime in Virtual Worlds: How to Get your own Syndicate Øyvind Skaar
Consequences of Botnets Spreading to Mobile Devices Anne Ruste Flø and Audun Jøsang
Impact Estimation using Data Flows over Attack Graphs Tomas Olsson
12:30 - 13:30 Lunch
13:30 - 15:00 Session 7: Embedded Systems and Mechanisms
Chair: Helger Lipmaa
Security and Trust for the Norwegian e-Voting Pilot Project e-Valg 2011 Arne Ansper, Sven Heiberg, Helger Lipmaa, Tom André Øverland and Filip Van Laenen
Advanced SIM capabilities supporting Trust-based applications Thomas Vilarinho, Kjetil Haslum and Josef Noll
Towards Practical Enforcement Theories Nataliia Bielova, Fabio Massacci and Andrea Micheletti
15:00 - 15:15 Coffee Break
15:15 - 16:45 Session 8: Protocols and Protocol Analysis
Chair: Filip Van Laenen
Security Analysis of AN.ON’s Payment Scheme Benedikt Westermann
Formal Analysis of the Estonian Mobile-ID protocol Peeter Laud and Meelis Roos
Generating In-Line Monitors For Rabin Automata Hugues Chabot, Raphael Khoury and Nadia Tawbi
16:45 - 17:00 Conference closing address Audun Jøsang
Conference Chair