{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,2]],"date-time":"2026-01-02T07:49:35Z","timestamp":1767340175813,"version":"3.38.0"},"reference-count":45,"publisher":"Institute of Electrical and Electronics Engineers (IEEE)","license":[{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/ieeexplore.ieee.org\/Xplorehelp\/downloads\/license-information\/IEEE.html"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-029"},{"start":{"date-parts":[[2025,1,1]],"date-time":"2025-01-01T00:00:00Z","timestamp":1735689600000},"content-version":"stm-asf","delay-in-days":0,"URL":"https:\/\/doi.org\/10.15223\/policy-037"}],"funder":[{"DOI":"10.13039\/501100000038","name":"Natural Sciences and Engineering Research Council of Canada","doi-asserted-by":"publisher","id":[{"id":"10.13039\/501100000038","id-type":"DOI","asserted-by":"publisher"}]},{"name":"Flex Group"},{"name":"PROMPT"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IEEE Trans.Inform.Forensic Secur."],"published-print":{"date-parts":[[2025]]},"DOI":"10.1109\/tifs.2025.3544485","type":"journal-article","created":{"date-parts":[[2025,2,21]],"date-time":"2025-02-21T18:38:29Z","timestamp":1740163109000},"page":"2538-2549","source":"Crossref","is-referenced-by-count":1,"title":["HSM-Based Architecture to Detect Insider Attacks on Server-Side Data"],"prefix":"10.1109","volume":"20","author":[{"ORCID":"https:\/\/orcid.org\/0009-0009-4235-2155","authenticated-orcid":false,"given":"Marc","family":"Dib","sequence":"first","affiliation":[{"name":"Department of Computer and Software Engineering, Polytechnique Montr&#x00E9;al, Mobile Computing and Networking Research Laboratory (LARIM), Montreal, QC, Canada"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Samuel","family":"Pierre","sequence":"additional","affiliation":[{"name":"Department of Computer and Software Engineering, Polytechnique Montr&#x00E9;al, Mobile Computing and Networking Research Laboratory (LARIM), Montreal, QC, Canada"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"263","reference":[{"volume-title":"Data Breaches That Have Happened in 2022 So Far\u2014Updated List","year":"2022","author":"Drapkin","key":"ref1"},{"volume-title":"Quebec Court Approves $200.9M Settlement Against Desjardins Over Data Breach | CBC News","year":"2024","author":"Press","key":"ref2"},{"volume-title":"Implementing Cisco Adaptive Security Appliance (ASA)","year":"2013","key":"ref3"},{"volume-title":"22 Insider Threat Statistics To Look Out For in 2023","year":"2023","author":"Georgiev","key":"ref4"},{"volume-title":"Insider Threats and Data Breaches","year":"2023","key":"ref5"},{"volume-title":"CIS Community Defense Model","year":"2023","key":"ref6"},{"key":"ref7","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5_509"},{"issue":"2","key":"ref8","first-page":"357","article-title":"Cryptographic processors\u2014A survey","volume-title":"Proc. IEEE","volume":"94","author":"Anderson"},{"key":"ref9","doi-asserted-by":"crossref","first-page":"114331","DOI":"10.1109\/ACCESS.2022.3217815","article-title":"Integration of hardware security modules and permissioned blockchain in industrial IoT networks","volume":"10","author":"Cabrera-Guti\u00e9rrez","year":"2022","journal-title":"IEEE Access"},{"volume-title":"The nShield security world architecture: Optimizing security and operational efficiency in entrust nShield HSM environments","year":"2023","key":"ref10"},{"key":"ref11","first-page":"86","article-title":"Intel SGX explained","volume":"2016","author":"Costan","year":"2016","journal-title":"IACR Cryptol. ePrint Arch."},{"key":"ref12","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5_227"},{"article-title":"Architecture bas\u00e9e sur HSM pour s\u00e9curiser les donn\u00e9es","year":"2020","author":"Dib","key":"ref13"},{"key":"ref14","doi-asserted-by":"crossref","first-page":"86848","DOI":"10.1109\/ACCESS.2023.3304994","article-title":"Insider attack model against HSM-based architecture","volume":"11","author":"Dib","year":"2023","journal-title":"IEEE Access"},{"issue":"3","key":"ref15","first-page":"21","article-title":"The CIA strikes back: Redefining confidentiality, integrity and availability in security","volume":"10","author":"Samonas","year":"2014","journal-title":"J. Inf. Syst. Secur."},{"year":"2020","key":"ref16","article-title":"How to protect your organization from insider threats"},{"key":"ref17","first-page":"1","article-title":"Understanding insider attack problem and scope in cloud","volume-title":"Proc. Int. Conf. Circuits, Power Comput. Technol. (ICCPCT)","author":"Gunasekhar"},{"key":"ref18","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5_438"},{"key":"ref19","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5"},{"volume-title":"U.S. Secure Hash (SHA and SHA-based HMAC and HKDF)","year":"2011","author":"Eastlake","key":"ref20"},{"key":"ref21","doi-asserted-by":"publisher","DOI":"10.1007\/978-1-4419-5906-5_580"},{"issue":"3","key":"ref22","doi-asserted-by":"crossref","first-page":"338","DOI":"10.1214\/aoms\/1177728975","article-title":"Stochastic processes occurring in the theory of queues and their analysis by the method of the imbedded Markov chain","volume":"24","author":"Kendall","year":"1953","journal-title":"Ann. Math. Statist."},{"key":"ref23","article-title":"Queuing theory","volume-title":"Operations Research Methodologies","author":"Ravindran","year":"2009"},{"volume-title":"Probability, Statistics and Queuing Theory","year":"2009","author":"Sundarapandian","key":"ref24"},{"volume-title":"Performance By Design: Computer Capacity Planning By Example","year":"2004","author":"Menasc","key":"ref25"},{"key":"ref26","doi-asserted-by":"publisher","DOI":"10.1109\/ISDFS49300.2020.9116436"},{"key":"ref27","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0052"},{"key":"ref28","doi-asserted-by":"publisher","DOI":"10.1109\/TCC.2015.2511730"},{"key":"ref29","doi-asserted-by":"publisher","DOI":"10.1109\/TCC.2020.2969655"},{"volume-title":"PKCS #11 Cryptographic Token Interface Base Specification Version 2.40 Plus Errata 01","year":"2016","author":"Gleeson","key":"ref30"},{"key":"ref31","first-page":"264","article-title":"EnclaveDB: A secure database using SGX","volume-title":"Proc. IEEE Symp. Secur. Privacy (SP)","author":"Priebe"},{"key":"ref32","doi-asserted-by":"publisher","DOI":"10.1109\/ICCPCT.2017.8074342"},{"key":"ref33","doi-asserted-by":"publisher","DOI":"10.1109\/ICCSIT.2010.5565009"},{"issue":"6","key":"ref34","doi-asserted-by":"crossref","first-page":"14","DOI":"10.1109\/MSP.2009.110","article-title":"Detecting insider theft of trade secrets","volume":"7","author":"Caputo","year":"2009","journal-title":"IEEE Secur. Privacy"},{"key":"ref35","doi-asserted-by":"crossref","DOI":"10.1016\/j.cose.2021.102221","article-title":"Deep learning for insider threat detection: Review, challenges and opportunities","volume":"104","author":"Yuan","year":"2021","journal-title":"Comput. Secur."},{"key":"ref36","first-page":"1","article-title":"A combined attack-tree and kill-chain approach to designing attack-detection strategies for malicious insiders in cloud computing","volume-title":"Proc. Int. Conf. Cyber Secur. Protection Digit. Services (Cyber Secur.)","author":"Duncan"},{"key":"ref37","doi-asserted-by":"publisher","DOI":"10.1109\/ICCC202255925.2022.9922750"},{"key":"ref38","doi-asserted-by":"publisher","DOI":"10.1109\/ICISS49785.2020.9316042"},{"volume-title":"Encrypted Databases Made Secure Yet Maintainable","year":"2023","author":"Li","key":"ref39"},{"key":"ref40","doi-asserted-by":"crossref","DOI":"10.6028\/NIST.SP.800-115","article-title":"Technical guide to information security testing and assessment","author":"Scarfone","year":"2008"},{"key":"ref41","doi-asserted-by":"crossref","DOI":"10.17487\/rfc4949","volume-title":"Internet Security Glossary, Version 2","author":"Shirey","year":"2007"},{"key":"ref42","doi-asserted-by":"crossref","DOI":"10.17487\/rfc0813","volume-title":"Window and Acknowledgement Strategy in TCP","author":"Clark","year":"1982"},{"volume-title":"PostgreSQL Database Management System","year":"2020","key":"ref43"},{"volume-title":"CIS Controls Guide","year":"2021","key":"ref44"},{"key":"ref45","article-title":"Linear MMSE estimation of random variables","volume-title":"Introduction To Probability, Statistics, and Random Processes","author":"Pishro-Nik","year":"2014"}],"container-title":["IEEE Transactions on Information Forensics and Security"],"original-title":[],"link":[{"URL":"http:\/\/xplorestaging.ieee.org\/ielx8\/10206\/10810755\/10898063.pdf?arnumber=10898063","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,3,5]],"date-time":"2025-03-05T06:08:42Z","timestamp":1741154922000},"score":1,"resource":{"primary":{"URL":"https:\/\/ieeexplore.ieee.org\/document\/10898063\/"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025]]},"references-count":45,"URL":"https:\/\/doi.org\/10.1109\/tifs.2025.3544485","relation":{},"ISSN":["1556-6013","1556-6021"],"issn-type":[{"type":"print","value":"1556-6013"},{"type":"electronic","value":"1556-6021"}],"subject":[],"published":{"date-parts":[[2025]]}}}