{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,21]],"date-time":"2026-05-21T22:08:17Z","timestamp":1779401297348,"version":"3.53.1"},"publisher-location":"Cham","reference-count":44,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783032234520","type":"print"},{"value":"9783032234537","type":"electronic"}],"license":[{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2026,1,1]],"date-time":"2026-01-01T00:00:00Z","timestamp":1767225600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2026]]},"DOI":"10.1007\/978-3-032-23453-7_30","type":"book-chapter","created":{"date-parts":[[2026,5,21]],"date-time":"2026-05-21T21:10:17Z","timestamp":1779397817000},"page":"568-589","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Now Let\u2019s Make It Physical! Enabling Trusted Certificate Issuance in\u00a0PKI via\u00a0Physical Bindings"],"prefix":"10.1007","author":[{"given":"Xiaolin","family":"Zhang","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Chenghao","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Kailun","family":"Qin","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yuxuan","family":"Wang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shipei","family":"Qu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tengfei","family":"Wang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Chi","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Dawu","family":"Gu","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2026,4,24]]},"reference":[{"key":"30_CR1","unstructured":"Amadeo, R.: Samsung\u2019s app-signing key leaked to sign malware. https:\/\/arstechnica.com\/gadgets\/2022\/12\/samsungs-android-app-signing-key-has-leaked-is-being-used-to-sign-malware\/ (2022)"},{"key":"30_CR2","unstructured":"Amazon: AWS CloudHSM. https:\/\/aws.amazon.com\/cn\/cloudhsm\/ (2024)"},{"key":"30_CR3","doi-asserted-by":"crossref","unstructured":"Anandakumar, N.N., Hashmi, M.S., Sanadhya, S.K.: Design and analysis of FPGA-based PUFs with enhanced performance for hardware-oriented security. ACM J. Emerg. Technol. Comput. Syst. 18(4), 72:1\u201372:26 (2022)","DOI":"10.1145\/3517813"},{"key":"30_CR4","doi-asserted-by":"crossref","unstructured":"Basin, D.A., Cremers, C., Kim, T.H., Perrig, A.: ARPKI: attack resilient public-key infrastructure. In: ACM CCS. pp. 382\u2013393 (2014)","DOI":"10.1145\/2660267.2660298"},{"key":"30_CR5","unstructured":"Boyapally, H., Chatterjee, D., Pratihar, K., Saha, S., Mukhopadhyay, D.: PUF-COTE: a PUF construction with challenge obfuscation and throughput enhancement (2022). https:\/\/eprint.iacr.org\/2022\/1005"},{"issue":"3","key":"30_CR6","first-page":"424","volume":"16","author":"U Chatterjee","year":"2019","unstructured":"Chatterjee, U., et al.: Building PUF based authentication and key exchange protocol for IoT without explicit CRPs in verifier database. IEEE TDSC 16(3), 424\u2013437 (2019)","journal-title":"IEEE TDSC"},{"key":"30_CR7","first-page":"756","volume":"16","author":"U Chatterjee","year":"2021","unstructured":"Chatterjee, U., Mukhopadhyay, D., Chakraborty, R.S.: 3PAA: a private PUF protocol for anonymous authentication. IEEE TIFS 16, 756\u2013769 (2021)","journal-title":"IEEE TIFS"},{"key":"30_CR8","doi-asserted-by":"crossref","unstructured":"Chi, A., Enright, B., McGrew, D.: Detecting weak keys in manufacturing certificates: a case study. In: ACSAC, pp. 759\u2013771 (2023)","DOI":"10.1145\/3627106.3627120"},{"key":"30_CR9","unstructured":"Chromium, G.: Certificate transparency. https:\/\/chromium.googlesource.com\/chromium\/src\/+\/master\/net\/docs\/certificate-transparency.md#Locally_trusted-CAs (2024)"},{"key":"30_CR10","doi-asserted-by":"crossref","unstructured":"Chuat, L., Kr\u00e4henb\u00fchl, C., Mittal, P., Perrig, A.: F-PKI: enabling innovation and trust flexibility in the HTTPS public-key infrastructure. In: NDSS (2022)","DOI":"10.14722\/ndss.2022.24241"},{"key":"30_CR11","unstructured":"Corfield, Gareth: leaked stolen Nvidia key can sign windows malware (2022). https:\/\/www.theregister.com\/2022\/03\/05\/nvidia_stolen_certificate\/"},{"issue":"4","key":"30_CR12","doi-asserted-by":"publisher","first-page":"35","DOI":"10.1007\/s00145-023-09475-1","volume":"36","author":"M van Dijk","year":"2023","unstructured":"van Dijk, M., Jin, C.: A theoretical framework for the analysis of physical unclonable function interfaces and its relation to the random oracle model. J. Cryptol. 36(4), 35 (2023)","journal-title":"J. Cryptol."},{"issue":"2","key":"30_CR13","first-page":"198","volume":"29","author":"D Dolev","year":"1983","unstructured":"Dolev, D., Yao, A.C.: On the security of public key protocols. IEEE TIFS 29(2), 198\u2013207 (1983)","journal-title":"IEEE TIFS"},{"key":"30_CR14","unstructured":"Duan, H., Fischer, R., Lou, J., Liu, S., Basin, D.A., Perrig, A.: RHINE: robust and high-performance internet naming with E2E authenticity. In: USENIX NSDI, pp. 531\u2013553 (2023)"},{"key":"30_CR15","unstructured":"Github: Armored Core PKI. https:\/\/github.com\/ArmoredCorePKI"},{"key":"30_CR16","unstructured":"Github: Let\u2019s Encrypt Pebble. https:\/\/github.com\/letsencrypt\/pebble (2024)"},{"key":"30_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1007\/978-3-540-74735-2_5","volume-title":"Cryptographic Hardware and Embedded Systems - CHES 2007","author":"J Guajardo","year":"2007","unstructured":"Guajardo, J., Kumar, S.S., Schrijen, G.-J., Tuyls, P.: FPGA intrinsic PUFs and their use for IP protection. In: Paillier, P., Verbauwhede, I. (eds.) CHES 2007. LNCS, vol. 4727, pp. 63\u201380. Springer, Heidelberg (2007). https:\/\/doi.org\/10.1007\/978-3-540-74735-2_5"},{"issue":"5","key":"30_CR18","doi-asserted-by":"publisher","first-page":"340","DOI":"10.3390\/e20050340","volume":"20","author":"O G\u00fcnl\u00fc","year":"2018","unstructured":"G\u00fcnl\u00fc, O., Kernetzky, T., Iscan, O., Sidorenko, V., Kramer, G., Schaefer, R.F.: Secure and reliable key agreement with physical unclonable functions. Entropy 20(5), 340 (2018)","journal-title":"Entropy"},{"key":"30_CR19","doi-asserted-by":"crossref","unstructured":"Guo, X., et al.: Exploiting FeFET switching stochasticity for low-power reconfigurable physical unclonable function. In: IEEE ESSCIRC (2021)","DOI":"10.1109\/ESSCIRC53450.2021.9567880"},{"key":"30_CR20","unstructured":"Hoogstraaten, T.H., et\u00a0al.: Black tulip. Tech. rep., (Fox-IT BV, 2012) (8 2012)"},{"key":"30_CR21","doi-asserted-by":"crossref","unstructured":"Hu, Y., Hooshmand, K., Kalidhindi, H., Yang, S.J., Popa, R.A.: Merkle$$ ^{2}$$: A low-latency transparency log system. In: IEEE S&P, pp. 285\u2013303 (2021)","DOI":"10.1109\/SP40001.2021.00088"},{"key":"30_CR22","doi-asserted-by":"crossref","unstructured":"Laurie, B., Langley, A., Kasper, E., Messeri, E., Stradling, R.: Certificate Transparency Version 2.0. RFC 9162 (2021)","DOI":"10.17487\/RFC9162"},{"key":"30_CR23","doi-asserted-by":"crossref","unstructured":"Lee, J.W., Lim, D., Gassend, B., Suh, E., van Dijk, M., Devadas, S.: A technique to build a secret key in integrated circuits for identification and authentication applications. In: 2004 Symposium on VLSI Circuits, pp. 176\u2013179 (2004)","DOI":"10.1109\/VLSIC.2004.1346548"},{"key":"30_CR24","unstructured":"Leyden, John: 23,000 https certs will be axed after key leak. https:\/\/www.theregister.com\/2018\/03\/01\/trustico_digicert_symantec_spat\/ (2018)"},{"key":"30_CR25","doi-asserted-by":"crossref","unstructured":"Matsumoto, S., Bosamiya, J.H., Dai, Y., van Oorschot, P.C., Parno, B.: CAPS: smoothly transitioning to a more resilient web PKI. In: ACSAC, pp. 655\u2013668 (2020)","DOI":"10.1145\/3427228.3427284"},{"key":"30_CR26","unstructured":"Mozilla: Bugzilla Keyword Search on Key Compromise (2024). https:\/\/bugzilla.mozilla.org\/buglist.cgi?quicksearch=key+compromise"},{"key":"30_CR27","doi-asserted-by":"crossref","unstructured":"Nassar, H., Bauer, L., Henkel, J.: ANV-PUF: machine-learning-resilient NVM-Based arbiter PUF. ACM Trans. Embedded Comput. Syst. 22(5s), 133:1\u2013133:23 (2023)","DOI":"10.1145\/3609388"},{"issue":"4","key":"30_CR28","doi-asserted-by":"publisher","first-page":"243","DOI":"10.46586\/tches.v2019.i4.243-290","volume":"2019","author":"PH Nguyen","year":"2019","unstructured":"Nguyen, P.H., Sahoo, D.P., Jin, C., Mahmood, K., R\u00fchrmair, U., van Dijk, M.: The Interpose PUF: secure PUF design against state-of-the-art machine learning attacks. IACR TCHES 2019(4), 243\u2013290 (2019)","journal-title":"IACR TCHES"},{"key":"30_CR29","doi-asserted-by":"crossref","unstructured":"Pappu, R.: Physical One-Way Functions. Ph.D. thesis, MIT (Sep 2002)","DOI":"10.1126\/science.1074376"},{"issue":"4","key":"30_CR30","first-page":"2457","volume":"19","author":"MA Qureshi","year":"2022","unstructured":"Qureshi, M.A., Munir, A.: PUF-RAKE: a PUF-based robust and lightweight authentication and key establishment protocol. IEEE TDSC 19(4), 2457\u20132475 (2022)","journal-title":"IEEE TDSC"},{"key":"30_CR31","unstructured":"Reijsbergen, D., Maw, A., Yang, Z., Dinh, T.T.A., Zhou, J.: TAP: transparent and privacy-preserving data services. In: USENIX Security, pp. 6489\u20136506 (2023)"},{"key":"30_CR32","doi-asserted-by":"crossref","unstructured":"R\u00fchrmair, U., van Dijk, M.: PUFs in security protocols: attack models and security evaluations. In: IEEE S&P, pp. 286\u2013300 (2013)","DOI":"10.1109\/SP.2013.27"},{"issue":"11","key":"30_CR33","first-page":"1876","volume":"8","author":"U R\u00fchrmair","year":"2013","unstructured":"R\u00fchrmair, U., et al.: PUF modeling attacks on simulated and silicon data. IEEE TIFS 8(11), 1876\u20131891 (2013)","journal-title":"IEEE TIFS"},{"key":"30_CR34","unstructured":"for Standardization, I.O.: Physically unclonable functions \u2014 Part 1: security requirements. Standard (Dec 2020)"},{"key":"30_CR35","unstructured":"for Standardization, I.O.: Physically unclonable functions \u2014 Part 2: test and evaluation methods. Standard (May 2022)"},{"key":"30_CR36","doi-asserted-by":"crossref","unstructured":"Tomescu, A., Bhupatiraju, V., Papadopoulos, D., Papamanthou, C., Triandopoulos, N., Devadas, S.: Transparency logs via append-only authenticated dictionaries. In: ACM CCS, pp. 1299\u20131316 (2019)","DOI":"10.1145\/3319535.3345652"},{"key":"30_CR37","doi-asserted-by":"crossref","unstructured":"Wen, E., Wang, J., Dietrich, J.: SecretHunter: a large-scale secret scanner for public git repositories. In: IEEE TrustCom, pp. 123\u2013130 (2022)","DOI":"10.1109\/TrustCom56396.2022.00028"},{"key":"30_CR38","first-page":"2719","volume":"17","author":"N Wisiol","year":"2022","unstructured":"Wisiol, N., Thapaliya, B., Mursi, K.T., Seifert, J., Zhuang, Y.: Neural network modeling attacks on arbiter-PUF-based designs. IEEE TIFS 17, 2719\u20132731 (2022)","journal-title":"IEEE TIFS"},{"key":"30_CR39","unstructured":"Xilinx: Physically Unclonable Function. https:\/\/docs.amd.com\/r\/en-US\/xapp1333-external-storage-puf\/Introduction (2022)"},{"key":"30_CR40","first-page":"2188","volume":"18","author":"C Xu","year":"2023","unstructured":"Xu, C., Zhang, J., Law, M., Zhao, X., Mak, P., Martins, R.P.: Transfer-path-based hardware-reuse strong PUF achieving modeling attack resilience with 200 million training CRPs. IEEE TIFS 18, 2188\u20132203 (2023)","journal-title":"IEEE TIFS"},{"issue":"12","key":"30_CR41","first-page":"4569","volume":"42","author":"X Zhang","year":"2023","unstructured":"Zhang, X., Gu, D., Wang, T., Huang, Y.: Old School, new primitive: toward scalable PUF-based authenticated encryption scheme in IoT. IEEE TCAD 42(12), 4569\u20134582 (2023)","journal-title":"IEEE TCAD"},{"key":"30_CR42","unstructured":"Zhang, X., Qin, K., Qu, S., Wang, T., Zhang, C., Gu, D.: Teamwork makes tee work: open and resilient remote attestation on decentralized trust (2024)"},{"key":"30_CR43","doi-asserted-by":"crossref","unstructured":"Zhang, Y., et al.: Rusted anchors: a national client-side view of hidden root CAs in the web PKI ecosystem. In: 2021 ACM CCS, pp. 1373\u20131387 (2021)","DOI":"10.1145\/3460120.3484768"},{"issue":"4","key":"30_CR44","first-page":"3299","volume":"20","author":"Y Zheng","year":"2023","unstructured":"Zheng, Y., Liu, W., Gu, C., Chang, C.: PUF-based mutual authentication and key exchange protocol for peer-to-peer IoT applications. IEEE TDSC 20(4), 3299\u20133316 (2023)","journal-title":"IEEE TDSC"}],"container-title":["Lecture Notes of the Institute for Computer Sciences, Social Informatics and Telecommunications Engineering","Security and Privacy in Communication Networks"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-032-23453-7_30","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,5,21]],"date-time":"2026-05-21T21:10:25Z","timestamp":1779397825000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-032-23453-7_30"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2026]]},"ISBN":["9783032234520","9783032234537"],"references-count":44,"URL":"https:\/\/doi.org\/10.1007\/978-3-032-23453-7_30","relation":{},"ISSN":["1867-8211","1867-822X"],"issn-type":[{"value":"1867-8211","type":"print"},{"value":"1867-822X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2026]]},"assertion":[{"value":"24 April 2026","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"SecureComm","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Security and Privacy in Communication Systems","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Xiangtan","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2025","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"4 July 2025","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"6 July 2025","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"securecomm2025","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/securecomm.eai-conferences.org\/2025\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}