The document proposes a lightweight secure scheme to detect packet forgery and loss attacks in wireless sensor networks. It relies on in-packet Bloom filters to encode data provenance. The scheme introduces efficient mechanisms for provenance verification and reconstruction at the base station. Key generation, encryption, and signature techniques are used to securely transmit provenance information and detect suspicious data packets. The proposed technique is evaluated analytically and empirically, proving its effectiveness and efficiency in detecting attacks.