A protection model is presented for a multi-user dataflow computing system which is incorporated into its functional high-level language. The model is based on tags attached as 'seals' to values exchanged among processes to prevent leaking of information. A tag attached to a value, as a 'seal' does not prevent that value from being propagated to any place within the system; rather, it guarantees that the value cannot leave the system unless a matching tag is presented. Any function applied to sealed values will produce results that carry the union of all seals carried by the argument values. Thus, it is also guaranteed that no information derived from a sealed value will be able to leave the system unless it is explicitly unsealed.The funct...
Security is rarely a static notion. What is considered to be confidential or untrusted data varies o...
textAs computer systems support more aspects of modern life, from finance to health care, security i...
International audienceSAFE is a clean-slate design for a highly secure computer system, with pervasi...
This thesis presents a study of problems in protection and security that arise in a general-purpose ...
A protection model is presented for a general-purpose computing system based on keys attached as ‘se...
separation, containment, utility computing, HPUX, assurance One of the key aspects of securing a sys...
Abstract—Interface-confinement is a common mechanism that secures untrusted code by executing it ins...
As more and more sensitive data is handled by software, itstrustworthiness becomes an increasingly i...
Decentralized Information Flow Control (DIFC) [24] is an ap-proach to security that allows applicati...
Abstract—Interface-confinement is a common mechanism that secures untrusted code by executing it ins...
This thesis explores several ways to diversify the field of Information Flow Control. At the heart o...
Interface-confinement is a common mechanism that secures untrusted code by executing it inside a san...
Sensitive information is a crucial asset for both individuals and companies. Since it is processed i...
The growing use of mobile code in downloaded programs such as applets and servlets has increased int...
The growing use of mobile code in downloaded programs such as applets and servlets has increased int...
Security is rarely a static notion. What is considered to be confidential or untrusted data varies o...
textAs computer systems support more aspects of modern life, from finance to health care, security i...
International audienceSAFE is a clean-slate design for a highly secure computer system, with pervasi...
This thesis presents a study of problems in protection and security that arise in a general-purpose ...
A protection model is presented for a general-purpose computing system based on keys attached as ‘se...
separation, containment, utility computing, HPUX, assurance One of the key aspects of securing a sys...
Abstract—Interface-confinement is a common mechanism that secures untrusted code by executing it ins...
As more and more sensitive data is handled by software, itstrustworthiness becomes an increasingly i...
Decentralized Information Flow Control (DIFC) [24] is an ap-proach to security that allows applicati...
Abstract—Interface-confinement is a common mechanism that secures untrusted code by executing it ins...
This thesis explores several ways to diversify the field of Information Flow Control. At the heart o...
Interface-confinement is a common mechanism that secures untrusted code by executing it inside a san...
Sensitive information is a crucial asset for both individuals and companies. Since it is processed i...
The growing use of mobile code in downloaded programs such as applets and servlets has increased int...
The growing use of mobile code in downloaded programs such as applets and servlets has increased int...
Security is rarely a static notion. What is considered to be confidential or untrusted data varies o...
textAs computer systems support more aspects of modern life, from finance to health care, security i...
International audienceSAFE is a clean-slate design for a highly secure computer system, with pervasi...