| 2008 | Panel: Usable Cryptography: Manifest Destiny or Oxymoron?. | Mary Ellen Zurko, Andrew S. Patrick |
| 2008 | Making Quantitative Measurements of Privacy/Analysis Tradeoffs Inherent to Packet Trace Anonymization. | William Yurcik, Clay Woolam, Greg Hellings, Latifur Khan, Bhavani Thuraisingham |
| 2008 | Constant-Round Password-Based Authenticated Key Exchange Protocol for Dynamic Groups. | Shuhua Wu, Yuefei Zhu |
| 2008 | Privacy Threats in Online Stock Quotes. | Peter Williams |
| 2008 | OpenPGP-Based Financial Instruments and Dispute Arbitration. | Daniel A. Nagy, Nadzeya V. Shakel |
| 2008 | Competition and Fraud in Online Advertising Markets. | Bob Mungamuru, Stephen A. Weis |
| 2008 | Evaluating the Wisdom of Crowds in Assessing Phishing Websites. | Tyler Moore, Richard Clayton |
| 2008 | Don't Clog the Queue! Circuit Clogging and Mitigation in P2P Anonymity Schemes. | Jon McLachlan, Nicholas Hopper |
| 2008 | Securing Web Banking Applications. | Antonio San Martino, Xavier Perramon |
| 2008 | Quantifying Resistance to the Sybil Attack. | N. Boris Margolin, Brian Neil Levine |
| 2008 | Weighing Down "The Unbearable Lightness of PIN Cracking". | Mohammad Mannan, Paul C. van Oorschot |
| 2008 | A Practical Universal Circuit Construction and Secure Evaluation of Private Functions. | Vladimir Kolesnikov, Thomas Schneider |
| 2008 | Identity Theft: Much Too Easy? A Study of Online Systems in Norway. | Andr N. Klingsheim, Kjell Jrgen Hole |
| 2008 | An Efficient Deniable Key Exchange Protocol (Extended Abstract). | Shaoquan Jiang, Reihaneh Safavi-Naini |
| 2008 | Proactive RSA with Non-interactive Signing. | Stanislaw Jarecki, Josh Olsen |
| 2008 | ST&E Is the Most Cost Effective Measure for Comply with Payment Card Industry (PCI) Data Security Standard. | Ken Huang, Paul Douthit |
| 2008 | Identity-Based Online/Offline Encryption. | Fuchun Guo, Yi Mu, Zhide Chen |
| 2008 | Generalized Non-Interactive Oblivious Transfer Using Count-Limited Objects with Applications to Secure Mobile Agents. | Vandana Gunupudi, Stephen R. Tate |
| 2008 | Breaking Legacy Banking Standards with Special-Purpose Hardware. | Tim Gneysu, Christof Paar |
| 2008 | Good Variants of HB | Henri Gilbert, Matthew J. B. Robshaw, Yannick Seurin |
| 2008 | PBS: Private Bartering Systems. | Keith B. Frikken, Lukasz Opyrchal |
| 2008 | A Proof of Concept Attack against Norwegian Internet Banking Systems. | Yngve Espelid, Lars-Helge Netland, Andr N. Klingsheim, Kjell Jrgen Hole |
| 2008 | Revisiting Pairing Based Group Key Exchange. | Yvo Desmedt, Tanja Lange |
| 2008 | Phishwish: A Stateless Phishing Filter Using Minimal Rules. | Debra L. Cook, Vijay K. Gurbani, Michael Daniluk |
| 2008 | Improvement of Efficiency in (Unconditional) Anonymous Transferable E-Cash. | Sbastien Canard, Aline Gouget, Jacques Traor |