cs.CR · 2026-07-13 · No. 52

Cryptography and Security, 2026-07-13.

5 new papers in cs.CR. Titles, authors, abstracts. Links to arXiv. Want this in your inbox every morning? Subscribe →

01 — The papers

5 entries
  1. 01

    VEXAIoT: Autonomous IoT Vulnerability EXploitation using AI Agents

    Katherine Swinea, Kshitiz Aryal, Lopamudra Praharaj, Maanak Gupta

    cs.CR · cs.AI

    Internet of Things (IoT) systems are inherently vulnerable due to constrained hardware, outdated firmware, and insecure default configurations, creating a need for scalable and adaptive security testing approaches. While recent adoptions of Large Language Model (LLM) agents have demonstrated promise in penetration testing and Capture-the-Flag (CTF) environments, their application to IoT specific vulnerabilities remains unexplored. This paper...

    arxiv.org/abs/2607.09653 · PDF

  2. 02

    Leveraging Interpretable Tsetlin Machine for PDF Malware Detection

    Rahul Jaiswal

    cs.CR · cs.LG

    In the digital era, Portable Document Format (PDF) is one of the most widely used file formats for storing and exchanging digital documents due to its platform independence and rich functionality. However, these same capabilities have also made PDF files an attractive attack vector for cyberattackers, who embed malicious code within seemingly legitimate documents to compromise target systems. This paper presents a novel interpretable Tsetlin...

    arxiv.org/abs/2607.09290 · PDF

  3. 03

    Blockchain-Linked Auditable Decision Management for Telecom/IoT Fraud-Control Requests

    Saviz Changizi, Nasibeh Mohammadzadeh, Mohammad Shojafar, Rahim Tafazolli

    cs.CR · cs.AI

    Telecom fraud-control studies often stop at detector-level classification, but deployment use requires request-level policy resolution, lifecycle traceability, and auditability. This paper reframes fraud control as blockchain-linked auditable decision management for synthetic telecom/IoT fraud-control requests, and its main result is that the QLoRA-tuned LLM branch becomes much more usable than zero-shot prompting but mainly approaches,...

    arxiv.org/abs/2607.09259 · PDF

  4. 04

    RaMark: Radioactive Watermarking for Generated Tabular Data

    Xin Che, Lingyang Chu, Qiqi Zhang, Xinyu Ma, Xuan Luo, Jian Pei

    cs.CR · cs.LG

    Recent advances in generative modeling have made generated tabular data a practical solution for privacy-sensitive data sharing, where watermarking enables ownership verification. However, existing watermarking methods fundamentally fail under retraining attacks, in which an adversary retrains a generative model on a watermarked dataset and regenerates high-utility data that no longer carries the watermark. We address this challenge by...

    arxiv.org/abs/2607.09000 · PDF

  5. 05

    Proof-of-Continuity: A Temporal Model for Authority Propagation in Distributed Systems and AI Agents

    Nicola Gallo

    cs.CR · cs.DC

    Proof-of-Possession authorization models derive authority from the possession of artifacts such as tokens, credentials, or capabilities. This paper argues that possession is insufficient for discrete execution chains, whether they span multiple services or occur as separated steps within the same machine, because it does not guarantee preservation of the causal relationship between the origin of a request and the authority exercised at later...

    arxiv.org/abs/2607.08906 · PDF

This edition is part of The Daily Abstract — cs.CR archive. Subscribe to receive these in your inbox each morning, automatically translated to Spanish, with reply-to-PDF: arxivdaily.ignorelist.com.

Colophon Set in Georgia, with system sans for interface chrome and a monospaced stack for code and paper identifiers. Sole accent: amber #D99C5E. Built and served on an always-free VM. The masthead is set 14% letterspaced because newspapers do that and it works.