中文
相关论文

相关论文: Analysis of access in the Take-Grant model

200 篇论文

Control systems behavior can be analyzed taking into account a large number of parameters: performances, reliability, availability, security. Each control system presents various security vulnerabilities that affect in lower or higher…

密码学与安全 · 计算机科学 2019-08-30 Emil Pricop , Sanda Florentina Mihalache , Nicolae Paraschiv , Jaouhar Fattahi , Florin Zamfir

Techniques for verifying or invalidating the security of computer systems have come a long way in recent years. Extremely sophisticated tools are available to specify and formally verify the behavior of a system and, at the same time,…

密码学与安全 · 计算机科学 2024-04-16 Matteo Busi , Riccardo Focardi , Flaminia Luccio

This paper proposes a novel visual model for web applications security monitoring. Although an automated intrusion detection system can shield a web application from common attacks, it usually cannot detect more complicated break-ins. So, a…

密码学与安全 · 计算机科学 2019-04-09 Tran Tri Dang , Tran Khanh Dang

Access control is the enforcement of the authorization policy, which defines subjects, resources, and access rights. Graph-structured data requires advanced, flexible, and fine-grained access control due to its complex structure as…

密码学与安全 · 计算机科学 2024-06-03 Aya Mohamed , Dagmar Auer , Daniel Hofer , Josef Kueng

An approach to the development of security test procedures for information security controls is presented. The recommendations for optimizing the test procedure are obtained

密码学与安全 · 计算机科学 2013-06-11 Alexander Barabanov , Maxim Grishin , Alexey Markov

This report presents a taxonomy of vulnerabilities created as a part of an effort to develop a framework for deriving verification and validation strategies to assess software security. This taxonomy is grounded in a theoretical model of…

密码学与安全 · 计算机科学 2007-05-23 Anil Bazaz , James D. Arthur

The paper examines quantitative assessment of wireless distribution system security, as well as an assessment of risks from attacks and security violations. Furthermore, it describes typical security breach and formal attack models and five…

密码学与安全 · 计算机科学 2019-06-27 Volodymyr Buriachok , Volodymyr Sokolov , Pavlo Skladannyi

This paper presents a novel approach for augmenting proof-based verification with performance-style analysis of the kind employed in state-of-the-art model checking tools for probabilistic systems. Quantitative safety properties usually…

计算机科学中的逻辑 · 计算机科学 2009-12-11 Ukachukwu Ndukwu

In this work, we study the problem of verification of systems in the presence of attackers using bounded model checking. Given a system and a set of security requirements, we present a methodology to generate and classify attackers, mapping…

密码学与安全 · 计算机科学 2019-11-15 Eric Rothstein-Morris , Sun Jun , Sudipta Chattopadhyay

We introduce the use, monitoring, and enforcement of integrity constraints in trust management-style authorization systems. We consider what portions of the policy state must be monitored to detect violations of integrity constraints. Then…

密码学与安全 · 计算机科学 2007-05-23 Sandro Etalle , William H. Winsborough

Obtaining a well-trained model involves expensive data collection and training procedures, therefore the model is a valuable intellectual property. Recent studies revealed that adversaries can `steal' deployed models even when they have no…

密码学与安全 · 计算机科学 2021-12-08 Yiming Li , Linghui Zhu , Xiaojun Jia , Yong Jiang , Shu-Tao Xia , Xiaochun Cao

A fine-grained provenance-based access control policy model is proposed in this paper, in order to improve the express performance of existing model. This method employs provenance as conditions to determine whether a piece of data can be…

密码学与安全 · 计算机科学 2020-01-08 Xinyu Fan , Faen Zhang , Jianfei Song , Jingming Guo , Fujie Gao

The advance of web services technologies promises to have far-reaching effects on the Internet and enterprise networks allowing for greater accessibility of data. The security challenges presented by the web services approach are…

计算机科学中的逻辑 · 计算机科学 2012-06-15 Michele Barletta , Silvio Ranise , Luca Viganò

This work aims to solve a practical problem, i.e., how to quantify the risk brought upon a system by different attackers. The answer is useful for optimising resource allocation for system defence. Given a set of safety requirements, we…

计算机科学中的逻辑 · 计算机科学 2018-11-27 Eric Rothstein-Morris , Sun Jun

In this paper considered question of using pattern recognition methods in network equipment state identification.

网络与互联网体系结构 · 计算机科学 2007-05-23 Yuriy A. Chashkov

This paper reports on an incremental method that allows adding security mechanisms to an existing, but insecure system, such as a prototype or a legacy system. The incremental method is presented and as a showcase its application is…

软件工程 · 计算机科学 2014-09-24 David Bettencourt da Cruz , Bernhard Rumpe , Guido Wimmel

The advent of large-scale, complex computing systems has dramatically increased the difficulties of securing accesses to systems' resources. To ensure confidentiality and integrity, the exploitation of access control mechanisms has thus…

软件工程 · 计算机科学 2015-08-18 Andrea Margheri , Rosario Pugliese , Francesco Tiezzi

Sufficient conditions for the controllability of a conservative reduced system are given. Several examples illustrating the theory are also presented.

最优化与控制 · 数学 2007-05-23 Petre Birtea , Mircea Puta , Tudor S. Ratiu

Graph models are helpful means of analyzing computer networks as well as complex system architectures for security. In this paper we evaluate the current state of research for representing and analysing cyber-attack using graph models, i.e.…

密码学与安全 · 计算机科学 2023-11-17 Jasmin Wachter

Cheating is a real problem in the Internet of Things. The fundamental question that needs to be answered is how we can trust the validity of the data being generated in the first place. The problem, however, isn't inherent in whether or not…

密码学与安全 · 计算机科学 2016-10-05 Yunpeng Zhang , Xuqing Wu