EDBT 2026 Demo / reviewers in the wild / expert
Imran Makhdoom
dblp:225/5997
· DBLP profile ↗
13ranked-venue papers
8as first author
10since 2021 · last 2026
0000-0002-6205-5897ORCID · verified
Domains — the database's venue-derived domains; a paper can count in several
Security and privacy · 6 · 5 first-author · 5 since 2021Computer networks · 4 · 2 first-author · 2 since 2021Software engineering, systems software and programming languages · 2 · 1 first-author · 2 since 2021Graphics, computer vision, multimedia, augmented reality and games · 1 · 1 since 2021Applied, interdisciplinary, general and emerging computing · 1 · 1 first-author · 1 since 2021
| Year | Publication | Venue | Position |
|---|---|---|---|
| 2026 | A systematic review of secure federated learning based on blockchain and Multi-Party computation
Muhammad Nasir Mumtaz Bhutta, Ghulam Irtaza, Abid Mehmood, Rabeya Hamood, Imran Makhdoom, Mourad Elhadef, Muhammad Habib Ur Rehman |
Peer Peer Netw. Appl. | 5 |
| 2025 | SPAD - A Secure and Privacy-Preserving Distributed Analytics Framework
Imran Makhdoom, Mehran Abolhasan, Justin Lipman, Daniel Robert Franklin, Massimo Piccardi |
ICBC | 1 |
| 2025 | A False Positive Resilient Distributed Trust Management Framework for Collaborative Intrusion Detection SystemsabstractCollaborative Intrusion Detection System (CIDS) protect large networks against distributed attacks. However, a CIDS is vulnerable to insider attacks that decrease the mutual trust among the CIDS nodes. Most existing trust management approaches rely on a central authority, trusted third parties or network peers for managing trust. The current techniques are prone to high false positives and vulnerable to various reputation attacks. For instance, device attestation manages trust among CIDS nodes by verifying the integrity of a node’s hardware and software configuration. However, it lacks real-time monitoring of the dynamic state, limiting its effectiveness against ongoing attacks and malware. Therefore, incorporating the system’s dynamic state in the trust framework is crucial, but it causes false positives requiring corrective mechanisms. To address these challenges, this paper proposes a blockchain-based integrated trust management framework for CIDS, incorporating the device’s genome attestation, the system’s dynamic parameters, and a false positive resilient reputation mechanism. By storing the reputation scores on the blockchain, the framework alleviates the need for a third party for trust management and thus mitigates attacks applicable to reputation-based systems. The paper performs a comprehensive security and performance analysis of the proposed framework to gauge its efficiency and study the effects of a penalty on a node’s reputation during the recovery and rally phases. We also study the impact of false positives on the reputation of a node. The results show that Hyperledger Fabric offers lower transaction latency and low CPU utilization compared to Ethereum Blockchain. Kadhim Hayawi, Imran Makhdoom, Saifullah Khalid 0002, Richard Adeyemi Ikuesan, Mohammed Kaosar, Ishfaq Ahmad 0001 |
IEEE Trans. Serv. Comput. | 2 |
| 2024 | PrivySeC: A secure and privacy-compliant distributed framework for personal data sharing in IoT ecosystemsabstractThe contemporary era experiences an unprecedented dependence on data generated by individuals via an array of interconnected devices constituting the Internet of Things (IoT). The information amassed through IoT devices serves many objectives, including prescriptive analytics and predictive maintenance, preemptive healthcare measures, disaster mitigation, operational efficiency, and increased yield. In contrast, most applications or systems that rely on user-generated data to fulfill their business objectives face challenges in adhering to privacy protocols. Consequently, users are exposed to many privacy risks. Such infringements upon privacy provisions give rise to apprehensions regarding the authenticity of the processed data. Hence, this paper presents weaknesses and challenges in current practices and proposes “PrivySeC,” a distributed ledger technology (DLT) based framework for privacy-preserving and secure sharing of personally and non-personally identifiable information. The security analysis indicates that the proposed solution ensures data privacy by design and complies with most of the requirements mandated by various privacy regulations. Similarly, PrivySeC promises low transaction latency and provides high throughput. Although we have created a privacy-preserving solution for sharing smart farm data, it can be customized to meet the specific privacy requirements of individual applications. Imran Makhdoom, Mehran Abolhasan, Justin Lipman, Massimo Piccardi, Daniel Robert Franklin |
Blockchain Res. Appl. | 1 |
| 2023 | I2Map: IoT Device Attestation Using Integrity MapabstractThe reliability of any IoT system's operation depends upon the accuracy of sensor data. Numerous sensing devices are also embedded in autonomous systems. The adversary can manipulate the output of an IoT device, such as a speed sensor or a temperature sensor, by altering its hardware, software modules, network parameters, or device configuration. These unauthorized changes may affect the legitimate operation of the autonomous system and cause a malfunction or a safety hazard. In addition, the corrupt sensor data may also affect the machine learning models by introducing false training data or biasing the model towards certain decisions to cause the autonomous system to make incorrect decisions. The existing techniques mostly perform memory attestation or ensure the secure execution of an application. In addition, current approaches have unrealistic assumptions about adversaries’ capabilities and rely on trusted parties to initiate and run the attestation protocol. No existing technique provides all the required security features, including protection against return-oriented programming and network attacks, including interference, rainbow, and physical compromise. Hence, this research presents a secure and efficient version of a unique hybrid attestation scheme "I2Map" that detects a malicious or malfunctioning IoT device based on an integrity map. The performance analysis infers that I2Map performs better in transaction commit time and transaction costs with more device parameters than its predecessor. Imran Makhdoom, Mehran Abolhasan, Justin Lipman, Daniel Robert Franklin, Massimo Piccardi |
TrustCom | 1 |
| 2023 | Detecting compromised IoT devices: Existing techniques, challenges, and a way forward
Imran Makhdoom, Mehran Abolhasan, Daniel Robert Franklin, Justin Lipman, Massimo Piccardi, Negin Shariati |
Comput. Secur. | 1 |
| 2023 | Mitigation strategies against the phishing attacks: A systematic literature reviewabstractPhishing attacks are among the most prevalent attack mechanisms employed by attackers. The consequences of successful phishing include (and are not limited to) financial losses, impact on reputation, and identity theft. The paper presents a systematic literature review featuring 248 articles (from the beginning of 2018 until March 2023) across the main digital libraries to identify, (1) the existing mitigation strategies against phishing attacks, and the underlying technologies considered in the development of these strategies; (2) the most considered phishing vectors in the development of the mitigation strategies; (3) anti-phishing guidelines and recommendations for organizations and end-users respectively; and (4) gaps and open issues that exist in the state of the art. The paper advocates for the need to consider the abilities of human users during the design and development of the mitigation strategies as only technology-centric solutions will not suffice to cater to the challenges posed by phishing attacks. Bilal Naqvi, Kseniia Perova, Ali Farooq 0001, Imran Makhdoom, Shola Oyedeji, Jari Porras |
Comput. Secur. | 4 |
| 2023 | From trust to truth: Advancements in mitigating the Blockchain Oracle problem
Ammar Hassan, Imran Makhdoom, Mian Muhammad Waseem Iqbal, Awais Ahmad 0001, Asad Raza |
J. Netw. Comput. Appl. | 2 |
| 2022 | A comprehensive survey of covert communication techniques, limitations and future challenges
Imran Makhdoom, Mehran Abolhasan, Justin Lipman |
Comput. Secur. | 1 |
| 2021 | Automatic speech recognition: a survey
Mishaim Malik, Muhammad Kamran Malik, Khawar Mehmood, Imran Makhdoom |
Multim. Tools Appl. | 4 |
| 2020 | PLEDGE: An IoT-oriented Proof-of-Honesty based Blockchain Consensus ProtocolabstractThe existing lottery-based consensus algorithms, such as Proof-of-Work, and Proof-of-Stake, are mostly used for blockchain-based financial technology applications. Similarly, the Byzantine Fault Tolerance algorithms do provide consensus finality, yet they are either communications intensive, vulnerable to Denial-of-Service attacks, poorly scalable, or have a low faulty node tolerance level. Moreover, these algorithms are not designed for the Internet of Things systems that require near-real-time transaction confirmation, maximum fault tolerance, and appropriate transaction validation rules. Hence, we propose "Pledge," a unique Proof-of-Honesty based consensus protocol to reduce the possibility of malicious behavior during blockchain consensus. Pledge also introduces the Internet of Things centric transaction validation rules. Initial experimentation shows that Pledge is economical and secure with low communications complexity and low latency in transaction confirmation. Imran Makhdoom, Farzad Tofigh, Ian Zhou, Mehran Abolhasan, Justin Lipman |
LCN | 1 |
| 2020 | PrivySharing: A blockchain-based framework for privacy-preserving and secure data sharing in smart cities
Imran Makhdoom, Ian Zhou, Mehran Abolhasan, Justin Lipman, Wei Ni 0001 |
Comput. Secur. | 1 |
| 2019 | Blockchain's adoption in IoT: The challenges, and a way forward
Imran Makhdoom, Mehran Abolhasan, Haider Abbas, Wei Ni 0001 |
J. Netw. Comput. Appl. | 1 |