DOROTHY  DENNING'S
PUBLICATIONS
Activities Bio Courses Home Links Publications

This page lists some of my books, articles and reports, Congressional testimony, and notes and letters while I was still at Georgetown. For conference presentations, see my Activities page. For more recent publications and some updated links, see my NPS website.

Books

Information Warfare and Security, Addison-Wesley, 1999 -- available from the publisher or your favorite bookstore. Errata.

Internet Besieged: Countering Cyberspace Scofflaws, Addison-Wesley, 1998, edited with Peter J. Denning.

Rights and Responsibilities of Participants in Networked Communities, National Research Council, National Academy Press, 1994, edited with Herbert S. Lin.

Cryptography and Data Security, Addison-Wesley, 1982. Out of print.

Articles and Reports

Is Cyber Terror Next?, essays after September 11, Social Science Research Council, November 2001.

Key Concerns, Information Security Magazine, November 2001, p. 120.

Obstacles and Options for Cyber Arms Control, Presented at Arms Control in Cyberspace, Heinrich Böll Foundation, Berlin, June 29-30, 2001.

Cyberwarriors, Harvard International Review, Vol. XXIII, No. 2, Summer 2001.

Why I Love Biometrics: It Is "Liveness," Not Secrecy, That Counts, Information Security Magazine, January 2001.

Cyberterrorism, Global Dialogue, Autumn 2000.

Disarming the Black Hats? When does a security tool become a cyberweapon?, Information Security Magazine, October 2000.

Reflections on Cyberweapons Controls, Computer Security Journal, Vol. XVI, No. 4, Fall 2000.

Activism, Hacktivism, and Cyberterrorism: The Internet as a Tool for Influencing Foreign Policy, sponsored by the Nautilus Institute, fall 1999.

Hacktivism: An Emerging Threat to Diplomacy Foreign Service Journal, September 2000.

The Limits of Formal Security Models,  National Computer Systems Security Award Acceptance Speech, October 1999.

Hiding Crimes in Cyberspace (Word 97 without figures) - Denning and Baugh, Information, Communication and Society,  Vol. 2, No. 3, 1999, pp. 251-276.  Also published in Cybercrime, D. Thomas and B. D. Loader, eds., Routledge, 2000.  Use of encryption, steganography, anonymity services, and other technologies for hiding crimes.   An HTML version  is on John Young's Cryptome.

TriStrata: Breakthrough in Enterprise Security, December 1999.

TriStrata Integrates PKI Authentication, December 2000.

Who's Stealing Your Information? - Information Security, April 1999.

Easy Guide to Encryption Export Controls - Denning and Baugh, September 1999, describes regulations prior to September 16, 1999 announcement.

Cases Involving Encryption in Crime and Terrorism - last updated October 7, 1997.

Encryption and Evolving Technologies as Tools of Organized Crime and Terrorism - Denning and Baugh, excert from the introduction to paper published by the National Strategy Information Center's US Working Group on Organized Crime - May 15, 1997 - full paper.

Encryption Policy and Market Trends - Revised May 17, 1997.

Export Controls, Encryption Software, and Speech - Statement at RSA Data Security Conference, January 28, 1997.

Encrypting the Global Information Infrastructure - July 1996 paper in Computer Fraud & Abuse.

A Taxonomy for Key Key Recovery Encryption Systems - May 1997 paper on key recovery terminology and approaches - revised from A Taxonomy for Key Escrow Encryption Systems - March 1996 CACM - coauthored with Dennis Branstad.

Descriptions of over 30 Key Escrow Systems - descriptions of key recovery systems and approaches.

Decoding Encryption Policy - Denning and Baugh Feb. 1996 Security Management article.

Key Escrow Encryption Available - article in Lathe Gambit News Briefs.

Protection and Defense of Intrusion, Presented at Conf. on National Security in the Information Age, US Air Force Academy, Feb. 1996.

Location-Based Authentication: Grounding Cyberspace for Better Security, Computer Fraud & Security, Feb. 1996. Use of Global Positioning System for authentication.

The Future of Cryptography - revised Jan. 1996 but does not reflect my current thinking. See November 1999 afterword.

Crime and Crypto on the Information Superhighway - 1995 JCJE paper.

MIT Technology Review article on Clipper - July 1995.

Is Encryption Speech? A Cryptographer's Perspective - Feb. 1995.

Key Escrowing Today - Denning & Smid Sept. 1994 article on Clipper chip and its key escrow system.

Codes, Keys, and Conflicts: Issues in U.S. Crypto Policy - ACM study report, 1994.

The SKIPJACK Review: Interim Report and LaTeX Appendix - July 1993. Skipjack specs, declassified in June 1998.

To Tap or Not to Tap - March 1994 CACM debate on encryption and wiretapping.

Wiretap Laws and Procedures - with Don Delaney, John Kaye, and Alan McDonald - Sept. 1993.

A New Paradigm for Trusted Systems, New Security Paradigms Workshop, 1992.

Concerning Hackers Who Break Into Computer Systems - National Computer Security Conf., 1990; Postscript - 1995.

The Unites States v. Craig Neidorf - A Viewpoint on Electronic Publishing, Constistutional Rights, and Hacking, Comm. of the ACM, March 1991 (opening article in debate); my final rebuttal

An Intrusion-Detection Model, IEEE Trans. on Software Eng., February 1987 (also presented at the 1986 Symp. on Security and Privacy)  - RTF format.

A Lattice Model of Secure Information Flow, Comm. of the ACM, Vol. 19, No. 5, May 1976.

Congressional Testimony

Cyberterrorism, Testimony before the Special Oversight Panel on Terrorism, Committee on Armed Services, U.S. House of Representative, May 23, 2000.

Testimony on H.R. 850 Before the Subcommittee on Courts and Intellectual Property, Committee on the Judiciary, U.S. House of Representative - March 4, 1999.

Denning & Baugh Testimony Before Senate Judiciary Committee, Subcommittee on Technology, Terrorism, and Government Information - Sept 3, 1997.

Remarks before the House Science Committee Technology Subcommittee - Nov. 26, 1996.

Testimony on Encryption and GPS/WAAS - June 1995.

Testimony Before U.S. House of Representatives, May 3, 1994.

Notes etc.

Is Triple DES Secure? - comments on recent announcement of weakness, April 1998.

My position on encryption policy - last updated 6/97.

Dorothy Denning vs. John Gilmore on Hotwired's Brain Tennis - July 29 - Aug. 7, 1996.

Denning Interview in Wired by Steven Levy - September 1996.

My comments of June 11, 1996 on the NRC Cryptography Report, May 1996.

My Letter to Senator Leahy on S.1587: The Encrypted Communications Privacy Act - Mar. 1996.

Roving Wiretaps and the Anti-Terrorism Bill.

Criterion #5: Access Through Sender and Receiver - rationale, technical approaches, exposure risks, and wording - Dec. 1995 comments on software key escrow proposal.

The Denning-Barlow Clipper Chip Debate - March 10, 1994.

Newsday Editorial on Clipper.