1st European Workshop on

Hidden Layers: Enterprise Risk, AI Forensics, and Image Security

in collaboration with universities abroad and industry

September 15th, 2026 - University of Twente, The Netherlands

Held in conjunction with the EDOC conference series

Welcome to the official website of HIDDEN LAYERS (Research Meets Practice): Enterprise Risk, AI Forensics, and Image Security.

We propose the 1st edition of HIDDEN LAYERS, a workshop to be held in conjunction with 30th International Conference on Enterprise Design, Operations, and Computing (EDOC) / 28th International Conference on Business Informatics (CBI) (September 15–18, 2026, University of Twente). The workshop focuses on the intersection of Enterprise Risk, AI Forensics, and Image Security, aiming to bridge academic research with practical industry applications.

Modern enterprises increasingly rely on AI-driven systems and digital media, which introduces new security challenges. These include vulnerabilities discovered through forensic investigations, malicious content embedded in digital images, adversarial attacks on AI systems, and human-centric threats such as social engineering and insider attacks. By bringing together researchers, practitioners, and industry experts, HIDDEN LAYERS aims to:

Detailed Workshop Program

The workshop will take place in INFORM room.

Introduction
Keynote: The Hidden Layers of Trust: What Ransomware Negotiations Teach Us About Digital Trust
Fanfei Liu, Cyber Threat Intelligence Analyst at Signify
Are Your Features Lying? A Study on TikTok Fake Account Detection
Coffee/Tea Break
CLAD: Detecting Untargeted Backdoored Models via Cross-Layer Anomaly Detection
Scanning the Invisible: Detecting QR Code Phishing Beyond the URL Layer
Closure
Lunch

Each paper presentation is 15 minutes, followed by 10 minutes for Q&A, with a 5 minute buffer.

Keynote Speaker

Fanfei Liu

Speaker: Fanfei Liu, Cyber Threat Intelligence Analyst at Signify, The Netherlands.

The Hidden Layers of Trust: What Ransomware Negotiations Teach Us About Digital Trust

Keynote Description

Trust is fundamental to how we interact with people, organizations, and increasingly, digital systems. But what happens when trust must be established with someone who is inherently untrustworthy?

Ransomware negotiations offer an extreme case. Victims negotiate anonymously with criminals who have already compromised their systems, stolen their data, and demonstrated malicious intent. Yet for a negotiation to succeed, both sides still need a minimum level of trust.

Drawing on research combining interviews with experienced ransomware negotiation professionals and analysis of real-world ransomware negotiation chats, this keynote explores how trust is constructed under these highly adversarial conditions. The findings challenge conventional assumptions about trust: trust does not necessarily depend on goodwill or shared values. Instead, it can emerge through verifiable ability, predictable and consistent behaviour, reputation, and narrowly scoped commitments. Benevolence, meanwhile, plays a different role by shaping interpersonal rapport rather than providing a reliable basis for trust.

Using ransomware negotiation as a lens, the keynote then asks a broader question: What can these extreme interactions teach us about trust in today's digital world? From cyber threat intelligence and enterprise security to AI and synthetic media, as it becomes increasingly difficult to know who - or what - is behind a digital interaction, perhaps the important question is no longer simply "Can I trust this?" but rather: "What exactly am I trusting?"

The keynote invites researchers and practitioners to reconsider trust not as a binary state, but as something contextual, bounded, and continuously evaluated.

Call for Papers

We invite original research and industry papers for the 1st edition of HIDDEN LAYERS (Research Meets Practice): Enterprise Risk, AI Forensics, and Image Security.

This workshop bridges academic research with practical applications, emphasizing enterprise image security and forensic AI.

Workshop Topics

Enterprise Cybersecurity and Risk Management:

AI Forensics:

Image and Digital Media Security:

Application Domains

We welcome empirical research papers, experience reports, and case studies from all domains.

Submission Types

Workshop Venue

The workshop will be held in conjunction with 30th International Conference on Enterprise Design, Operations, and Computing (EDOC) / 28th International Conference on Business Informatics (CBI) (Sept 15–18, 2026, University of Twente).

Explore EDOC

Important Dates

Paper Submission

All submissions should be made in PDF format and comply with the Springer LNCS/LNBIP conference proceedings template:

Springer Proceedings Guidelines

Please submit your paper via EasyChair at: EasyChair link

At least one author of each accepted workshop paper will have to register for the whole EDOC 2026 + CBI 2026 conference and attend the workshop to present the paper.

Committee

The committees are experts from academia and industry in enterprise risk, AI forensics, cybersecurity, and image security.

Workshop Co-Chairs

Program Committee

Spread the World

Help us promote the workshop! Share via social media, mailing lists, and networks.