Laboratory of Open Systems and Networks has years of experience in research and development in the field of information security, privacy protection and cyber crime. Security research was performed both from the technical and socio-economic point of view, mostly within the EU projects.

Identity and digital certificate-based services, e.g. the first public-key certification authority in Slovenia, were developed in various projects, such as ICE-TEL, ICE-CAR, CADENUS and NASTEC. Experience gained was also used in preparation of Slovenian Electronic commerce and electronic signature act.

In the FP5 FAIN project, we have designed and implemented a flexible, adaptable and dependable network element based on the active networks principles, while the final result of the FP6 DIADEM project was a distributed firewall prototype. In the FP6 DAIDALOS integrated project architecture for privacy provision in pervasive systems and a protocol for trust negotiation between users and pervasive service providers were developed.

The FP7 P2P-Next project was focused toward development of an open source, efficient, trusted, personalized, user-centric and participatory content delivery system with social and collaborative connotation using the Peer-to-Peer paradigm. Distributed access control to the multimedia content was enabled by the newly developed ECS (Enhanced Closed Swarm) protocol that became an item of standardization within the Internet Engineering Task Force (IETF).

In order to improve authentication and prevent identity theft a novel graphical recognition-based authentication system for mobile devices has been developed. Within the national competence centre on cloud computing (CLASS) a cloud single sign-on solution has been developed that enables unified authentication in diverse cloud environments. Using the solution enterprises or institutions can mitigate some of cloud security risks and simplify user accounts and credentials management.

Within the EU STORK 2.0 and eSENS CIP projects we have contributed building blocks for a pan-European e-identity infrastructure that solves e-identity interoperability problems within Europe and supports a number of e-identity based services, such as e-learning, e-banking, e-business etc. We have also established three cross-border education and academic e-services: virtual learning environment, anonymous e-surveys, and job selection service. The services promise to be beneficial both for students and higher educational institutions, as well as for companies that make decisions on the basis of proven academic information, for example when validating job applicant’s qualifications in an electronic way.

As part of the “Dynamic Forensics Evaluation and Training (DFET)” project activities from the EU “Prevention of and Fight Against Crime “ (ISEC) programme we have created a cloud-based platform for digital forensics education and training, named EDUFORS. The platform enables automatic and dynamic generation, delivery and evaluation of investigation challenges that law enforcement officers, students and security specialists have to solve with cyber forensic analytical tools.

Within the “Cybercrime and cyberterrorism European research agenda (COURAGE)” project we have made a contribution to the research and development agenda in the area of the fight against cybercrime and cyberterrorism (CC/CT).

With regard to trust and reputation management we are investigating and improving on-line trust and reputation mechanisms and introduce new insights in the management of trust information under uncertainty.

From the socio-economic point of view we were analysing the assessment of the appropriate investment that is economically affordable and provides enough protection for the enterprise information systems.

Current activities are focused on identity theft prevention, computer forensics, tools and methods for detection of malware and similar attacks, cloud security, and trust and reputation management.


