Institution profile

Kadir Has University

Academic institutioneurope · tr
Official website
Research library12linked papers
Opportunities0open roles
Selected work

Representative Papers

SSHafe: A Real-Time SSH Brute Force Attack Detection and Novel Credential Rotation Standard

Aug 09, 2026

This study addresses critical vulnerabilities in SSH password authentication, including susceptibility to slow brute-force attacks, credential spraying, and phishing or session hijacking exploits targeting conventional account recovery mechanisms. To counter these threats, the authors propose a real-time detection and response framework based on time-series log analysis. By employing multi-scale sliding windows to extract behavioral features and integrating a lightweight LightGBM classifier, the system achieves 99.96% attack detection accuracy within 10 seconds and automatically locks compromised accounts. Furthermore, the work introduces a novel credential rotation protocol that eliminates reliance on sessions, email, or one-time passwords (OTPs), instead leveraging single-use cryptographic binding and passkey-based authentication to enable secure and efficient password resets, thereby significantly enhancing resilience against a broad spectrum of cyberattacks.

0 citationsRead paper

SFDS: Selective File Disclosure System

Jul 10, 2026

This work proposes a read-only file security sharing architecture based on Selective Disclosure JWT (SD-JWT), addressing limitations of traditional identity and access management (IAM) systems—such as complex configuration, security vulnerabilities, and the absence of a unified cross-format digital signature mechanism. By embedding digitally signed, integrity-protected metadata directly within files, the approach enables decentralized, verifiable authenticity at the file level without relying on centralized authentication or user databases. This is the first application of SD-JWT to file-level secure sharing, offering strong security guarantees for immutable resources while supporting cross-format distribution and significantly simplifying deployment.

0 citationsRead paper
Recent publications

Latest Papers

SSHafe: A Real-Time SSH Brute Force Attack Detection and Novel Credential Rotation Standard

Aug 09, 2026

This study addresses critical vulnerabilities in SSH password authentication, including susceptibility to slow brute-force attacks, credential spraying, and phishing or session hijacking exploits targeting conventional account recovery mechanisms. To counter these threats, the authors propose a real-time detection and response framework based on time-series log analysis. By employing multi-scale sliding windows to extract behavioral features and integrating a lightweight LightGBM classifier, the system achieves 99.96% attack detection accuracy within 10 seconds and automatically locks compromised accounts. Furthermore, the work introduces a novel credential rotation protocol that eliminates reliance on sessions, email, or one-time passwords (OTPs), instead leveraging single-use cryptographic binding and passkey-based authentication to enable secure and efficient password resets, thereby significantly enhancing resilience against a broad spectrum of cyberattacks.

0 citationsRead paper

SFDS: Selective File Disclosure System

Jul 10, 2026

This work proposes a read-only file security sharing architecture based on Selective Disclosure JWT (SD-JWT), addressing limitations of traditional identity and access management (IAM) systems—such as complex configuration, security vulnerabilities, and the absence of a unified cross-format digital signature mechanism. By embedding digitally signed, integrity-protected metadata directly within files, the approach enables decentralized, verifiable authenticity at the file level without relying on centralized authentication or user databases. This is the first application of SD-JWT to file-level secure sharing, offering strong security guarantees for immutable resources while supporting cross-format distribution and significantly simplifying deployment.

0 citationsRead paper