Global ETD Search

Search theses and dissertations gathered from participating repositories worldwide. Every result links back to the library that holds it. No account is needed.

Results

Showing 1 to 20 of 21 for “"Information Flow Control"”.

  1. Decentralized information flow control for databases

    … are inadequate for protecting sensitive information. Many of these breaches involve databases that handle information for a multitude of individuals, but databases don't provide practical tools to protect those individuals from each other, so that task is relegated to the application. …

    mit Repository record for Decentralized information flow control for databases (opens in a new tab)

  2. Mostly-static decentralized information flow control

    … mechanisms such as sand boxing and access control are either too restrictive or too weak -- they prevent applications from sharing data usefully, or allow private information to leak. For example, security mechanisms in Java prevent many useful applications while still permitting Trojan …

    mit Repository record for Mostly-static decentralized information flow control (opens in a new tab)

  3. Tackling cloud compliance through information flow control

    … in the context of cloud computing. Further, an information flow analysis is done, resulting in a system theoretical model that is able to describe information flow control in clouds based on the security classification of virtual resources and hardware resources. In a proof-of-concept …

    passau-thes Repository record for Tackling cloud compliance through information flow control (opens in a new tab)

  4. Verifying information flow control in Java bytecodes

    Thesis (M.Eng.)--Massachusetts Institute of Technology, Dept. of Electrical Engineering and Computer Science, 2000.

    mit Repository record for Verifying information flow control in Java bytecodes (opens in a new tab)

  5. Decentralized information flow control on a cluster

    Information flow control security models can prevent programs from divulging sensitive information in unexpected ways. There has been significant work on tracking information flow between processes in the same computer at the operating system level. I present a modification to the Flume information

    mit Repository record for Decentralized information flow control on a cluster (opens in a new tab)

  6. Information flow control for secure web sites

    … to reducing TCBs for Web sites is decentralized information flow control (DIFC) [21, 69, 113]. DIFC allows the split of a Web application into two types of components: those inside the TCB (trusted), and those without (untrusted). The untrusted components are large, change frequently, and do most …

    mit Repository record for Information flow control for secure web sites (opens in a new tab)

  7. Improving information flow control design with security contexts

    … the security context, which enables complex information flow control schemes to be written in Ruby without modification to the virtual machine. Security contexts are Ruby objects that act as transparent proxies and can be attached to other objects, allowing them to seamlessly modify …

    mit Repository record for Improving information flow control design with security contexts (opens in a new tab)

  8. Preventing Unintended Data Access: Information Flow Control in eBPF

    … is a critical resource containing sensitive information, eBPF also presents a significant attack surface for malicious actors. One of the challenging-to-detect yet easiest-to-execute attacks is sensitive information leakage, as it does not require additional privileges beyond standard eBPF …

    vt Repository record for Preventing Unintended Data Access: Information Flow Control in eBPF (opens in a new tab)

  9. Access and information flow control to secure mobile web service compositions in resource constrained environments

    … robust mechanisms for ensuring security for such information sharing services. Common security mechanisms such as access control and information flow control are either restrictive or weak in that they prevent applications from sharing data usefully, and/or allow private information leaks when …

    cape-town Repository record for Access and information flow control to secure mobile web service compositions in resource constrained environments (opens in a new tab)

  10. A file system design for the Aeolus security platform

    … Aeolus, a distributed security platform based on information flow control. An information flow control system regulates the use of sensitive information as it flows through an application. An important part of such a platform is files, since applications use files to store sensitive information. …

    mit Repository record for A file system design for the Aeolus security platform (opens in a new tab)

  11. Audit trails in the Aeolus distributed security platform

    … Aeolus, a distributed security platform based on information flow control. An information flow control system regulates all activities that concern information security. By recording all the operations monitored by Aeolus, our audit trails capture all actions that can affect system security. In …

    mit Repository record for Audit trails in the Aeolus distributed security platform (opens in a new tab)

  12. Information flow for secure distributed applications

    Private and confidential information is increasingly stored online and increasingly being exposed due to human errors as well as malicious attacks. Information leaks threaten confidentiality, lead to lawsuits, damage enterprise reputations, and cost billion of dollars. While distributed computing …

    mit Repository record for Information flow for secure distributed applications (opens in a new tab)

  13. Improving web site security with data flow management

    … dissertation describes two systems, RESIN and BFLow, whose goal is to help Web developers build more secure Web sites. RESIN and BFLOW use data flow management to help reduce the security risks of using buggy or malicious code. RESIN provides programmers with language-level mechanisms to track …

    mit Repository record for Improving web site security with data flow management (opens in a new tab)

  14. Analyzing audit trails in the Aeolus security platform

    … Aeolus, a distributed security platform based on information flow control. Previous work focused on collecting these audit trails in the form of event logs. This thesis presents a model for representing these events and a system for analyzing them. In addition to allowing users to issue SQL …

    mit Repository record for Analyzing audit trails in the Aeolus security platform (opens in a new tab)

  15. A framework for specifying and formally verifying application security policies

    … software applications that handle sensitive information is ensuring that they meet certain security and privacy policies, which guide how the application should be written in order to satisfy particular security properties. Common examples of security policies include information-flow control

    mit Repository record for A framework for specifying and formally verifying application security policies (opens in a new tab)

  16. Trust less : shrinking the trusted parts of trusted systems

    Modern computers, industrial control systems, and other automation are broadly vulnerable as a result of decades of systemic forces that have prioritized cost and performance over security. Computers across the board face a crisis in the form of motivated software adversaries with access to our …

    mit Repository record for Trust less : shrinking the trusted parts of trusted systems (opens in a new tab)

  17. Efficient and Verifiable Timing Channel Protection for Multi-Core Processors

    … to timing channel attacks that leak confidential information through the timing of microarchitectural events. Many timing channel attacks are caused by the interference between different programs in the shared resources of a multi-core processor. For example, an attacker program's cache lines can …

    cornell Repository record for Efficient and Verifiable Timing Channel Protection for Multi-Core Processors (opens in a new tab)

  18. Platform-level protection for interacting mobile apps

    … in existing platforms are due to the lack of information flow control for inter-app data exchanges. For example, a document viewer that opens an attachment from an email client often further discloses the attachment to other apps or to the network. To prevent such leaks, we need strict …

    texas Repository record for Platform-level protection for interacting mobile apps (opens in a new tab)

  19. Towards Zero Trust Network Security via Programmable Data Planes

    … To achieve our goal, we first design P4Control, an in-network information flow control mechanism that prevents cross-host attacks at line rate. P4Control leverages programmable switches and eBPF to correlate intra-host and inter-host activities to detect attackers that aim to laterally …

    vt Repository record for Towards Zero Trust Network Security via Programmable Data Planes (opens in a new tab)

  20. Enhancing Trust in Reconfigurable Hardware Systems

    … components that are glued together to realize control, computation and communication functions. Although these systems are complex, they are ubiquitous in the Internet of Things (IoT) era of autonomous vehicles/drones, smart homes, smart grids, etc. where everything is connected. These systems …

    vt Repository record for Enhancing Trust in Reconfigurable Hardware Systems (opens in a new tab)

Page 1 of 2