Matches in SemOpenAlex for { <https://semopenalex.org/work/W2068612323> ?p ?o ?g. }
Showing items 1 to 77 of
77
with 100 items per page.
- W2068612323 endingPage "31" @default.
- W2068612323 startingPage "1" @default.
- W2068612323 abstract "Access control is a critical feature of many systems, including networks of services, processes within a computer, and objects within a running process. The security consequences of a particular architecture or access control policy are often difficult to determine, especially where some components are not under our control, where components are created dynamically, or where access policies are updated dynamically. The SERSCIS Access Modeller (SAM) takes a model of a system and explores how access can propagate through it. It can both prove defined safety properties and discover unwanted properties. By defining expected behaviours, recording the results as a baseline, and then introducing untrusted actors, SAM can discover a wide variety of design flaws. SAM is designed to handle dynamic systems (i.e., at runtime, new objects are created and access policies modified) and systems where some objects are not trusted. It extends previous approaches such as Scollar and Authodox to provide a programmer-friendly syntax for specifying behaviour, and allows modelling of services with mutually suspicious clients. Taking the Confused Deputy example from Authodox we show that SAM detects the attack automatically; using a web-based backup service, we show how to model RBAC systems, detecting a missing validation check; and using a proxy certificate system, we show how to extend it to model new access mechanisms. On discovering that a library fails to follow an RFC precisely, we re-evaluate our existing models under the new assumption and discover that the proxy certificate design is not safe with this library." @default.
- W2068612323 created "2016-06-24" @default.
- W2068612323 creator A5048866718 @default.
- W2068612323 creator A5054272308 @default.
- W2068612323 creator A5077694971 @default.
- W2068612323 date "2013-09-01" @default.
- W2068612323 modified "2023-09-27" @default.
- W2068612323 title "Modelling Access Propagation in Dynamic Systems" @default.
- W2068612323 cites W1987035533 @default.
- W2068612323 cites W2020992910 @default.
- W2068612323 cites W2035142022 @default.
- W2068612323 cites W2056073317 @default.
- W2068612323 cites W2108120132 @default.
- W2068612323 cites W2121780525 @default.
- W2068612323 cites W2132334337 @default.
- W2068612323 cites W2167685423 @default.
- W2068612323 cites W2265839914 @default.
- W2068612323 cites W4213161996 @default.
- W2068612323 cites W4247889999 @default.
- W2068612323 doi "https://doi.org/10.1145/2516951.2516952" @default.
- W2068612323 hasPublicationYear "2013" @default.
- W2068612323 type Work @default.
- W2068612323 sameAs 2068612323 @default.
- W2068612323 citedByCount "7" @default.
- W2068612323 countsByYear W20686123232013 @default.
- W2068612323 countsByYear W20686123232015 @default.
- W2068612323 countsByYear W20686123232017 @default.
- W2068612323 crossrefType "journal-article" @default.
- W2068612323 hasAuthorship W2068612323A5048866718 @default.
- W2068612323 hasAuthorship W2068612323A5054272308 @default.
- W2068612323 hasAuthorship W2068612323A5077694971 @default.
- W2068612323 hasConcept C111919701 @default.
- W2068612323 hasConcept C120314980 @default.
- W2068612323 hasConcept C2777407602 @default.
- W2068612323 hasConcept C2778514511 @default.
- W2068612323 hasConcept C2780945871 @default.
- W2068612323 hasConcept C38652104 @default.
- W2068612323 hasConcept C41008148 @default.
- W2068612323 hasConcept C44415380 @default.
- W2068612323 hasConcept C45567728 @default.
- W2068612323 hasConcept C527821871 @default.
- W2068612323 hasConcept C77088390 @default.
- W2068612323 hasConcept C98045186 @default.
- W2068612323 hasConceptScore W2068612323C111919701 @default.
- W2068612323 hasConceptScore W2068612323C120314980 @default.
- W2068612323 hasConceptScore W2068612323C2777407602 @default.
- W2068612323 hasConceptScore W2068612323C2778514511 @default.
- W2068612323 hasConceptScore W2068612323C2780945871 @default.
- W2068612323 hasConceptScore W2068612323C38652104 @default.
- W2068612323 hasConceptScore W2068612323C41008148 @default.
- W2068612323 hasConceptScore W2068612323C44415380 @default.
- W2068612323 hasConceptScore W2068612323C45567728 @default.
- W2068612323 hasConceptScore W2068612323C527821871 @default.
- W2068612323 hasConceptScore W2068612323C77088390 @default.
- W2068612323 hasConceptScore W2068612323C98045186 @default.
- W2068612323 hasFunder F4320334960 @default.
- W2068612323 hasIssue "2" @default.
- W2068612323 hasLocation W20686123231 @default.
- W2068612323 hasOpenAccess W2068612323 @default.
- W2068612323 hasPrimaryLocation W20686123231 @default.
- W2068612323 hasRelatedWork W2068612323 @default.
- W2068612323 hasRelatedWork W2148952798 @default.
- W2068612323 hasRelatedWork W2244657583 @default.
- W2068612323 hasRelatedWork W2356120133 @default.
- W2068612323 hasRelatedWork W2368322685 @default.
- W2068612323 hasRelatedWork W2475594486 @default.
- W2068612323 hasRelatedWork W3129930688 @default.
- W2068612323 hasRelatedWork W4246289931 @default.
- W2068612323 hasRelatedWork W4366259353 @default.
- W2068612323 hasRelatedWork W3138978413 @default.
- W2068612323 hasVolume "16" @default.
- W2068612323 isParatext "false" @default.
- W2068612323 isRetracted "false" @default.
- W2068612323 magId "2068612323" @default.
- W2068612323 workType "article" @default.