(Enter summary)
Abstract: Information integrity policies are traditionally enforced by
access control mechanisms that prevent unauthorized users from modifying
data. However, access control does not provide end-to-end assurance
of integrity. For that reason, integrity guarantees in the form of noninterference
assertions have been proposed. Despite the appeals of such
information-ow based approaches to integrity, that solution is also unsatisfactory
because it leads to a weaker notion of integrity than needed
in... (Update)
Cited by: More
Run-time Principals in Information-flow Type Systems - Stephen Tse Steve (2004)
(Correct)
Active bibliography (related documents): More All
1.7: A Type System for Robust Declassification - Zdancewic (2003)
(Correct)
0.5: Manifest Security for Distributed Information - Crary, Harper, Pfenning.. (2006)
(Correct)
0.5: The Specification and Implementation of `Commercial' Security.. - Simon Foley (1997)
(Correct)
Similar documents based on text: More All
0.2: A Theory of Aspects - Walker, Zdancewic, Ligatti (2003)
(Correct)
0.2: Secure Information Flow and CPS - Zdancewic, Myers (2001)
(Correct)
0.2: Integrity Mechanisms in Database Management Systems - Sandhu, Jajodia (1990)
(Correct)
Related documents from co-citation: More All
2: A Core Calculus of Dependency
- Abadi, Banerjee et al. - 1999
2: The SLam calculus: Programming with secrecy and integrity
- Heintze, Riecke - 1998
2: safe information flow with decentralized labels (context) - Myers, Liskov - 1998
BibTeX entry: (Update)
P. Li, Y. Mao, and S. Zdancewic. Information integrity policies. In Proceedings of the Workshop on Formal Aspects in Security & Trust (FAST), Sept. 2003. http://citeseer.ist.psu.edu/article/li03information.html More
@misc{ li03information,
author = "P. Li and Y. Mao and S. Zdancewic",
title = "Information integrity policies",
text = "P. Li, Y. Mao, and S. Zdancewic. Information integrity policies. In Proceedings
of the Workshop on Formal Aspects in Security & Trust (FAST), Sept. 2003.",
year = "2003",
url = "citeseer.ist.psu.edu/article/li03information.html" }
Citations (may not include all citations):
650
An axiomatic basis for computer programming (context) - Hoare - 1969
566
Proof-carrying code
- Necula - 1997
192
Designing programs that check their work
- Blum, Kannan - 1995
173
A comparison of commercial and military computer security po.. (context) - Clark, Wilson - 1987
170
Security policies and security models (context) - Goguen, Meseguer - 1982
124
Protection in operating systems (context) - Harrison, Ruzzo et al. - 1976
120
Integrity considerations for secure computer systems (context) - Biba - 1977
100
Programming semantics for multiprogrammed computations
- Dennis, VanHorn - 1966
85
The SLam calculus: Programming with secrecy and integrity
- Heintze, Riecke - 1998
64
Detecting format string vulnerabilities with type quali ers
- Shankar, Talwar et al. - 2001
51
Security in Computing (context) - eeger - 1997
41
Protecting privacy using the decentralized label model
- Myers, Liskov - 2000
28
The costs and limits of availability for replicated services
- Yu, Vahdat - 2001
27
A sound type system for secure ow analysis (context) - Volpano, rey et al. - 1996
25
A case for redundant arrays of inexpensive disks (context) - Patterson, Gibson et al. - 1988
24
Secure computer system: Uni ed exposition and Multics interp.. (context) - Bell, LaPadula - 1975
20
Ecient software-based fault isolation (context) - Wahbe, Lucco et al. - 1993
20
Disconnected operation in the coda le system (context) - Kistler, Satyanarayanan - 1992
19
Stack inspection: Theory and variants (context) - Fournet, Gordon - 2002
16
The security architecture formerly known as stack inspection.. (context) - Wallach, Appel et al. - 2000
10
Language-based information- ow security (context) - Sabelfeld, Myers - 2003
10
Certi cation of Programs for Secure Information Flow (context) - Denning, Denning - 1977
8
Information ow inference for free (context) - cois, Sylvain - 2000
7
JFlow: Practical mostly-static information ow control (context) - Myers - 1999
7
Also available as TR 99-1759 (context) - Schneider, policies et al. - 2001
7
The Correctness Problem in Computer Science (context) - Boyer, Moore - 1981
6
MiSFIT: A tool for constructing safe extensible c++ systems (context) - Small - 1997
6
Secure program partitioning
- Zdancewic, Zheng et al. - 2002
5
Using mandatory integrity to enforce \commercial (context) - Lee - 1988
5
Building secure distributed systems using replication and pa.. (context) - Zheng, Chong et al. - 2003
4
Monitoring and checking framework for run-time correctness a..
- Lee, Ben-Abdallah et al. - 1998
4
commercial (context) - Foley, cation et al. - 1997
4
HYDRA: The kernel of a multiprocessor system (context) - Wulf, Cohen et al. - 1974
3
Security models and information ow (context) - McLean - 1990
3
A nonfunctional approach to system integrity (context) - Foley - 2003
3
Robust declassi cation (context) - Zdancewic, Myers - 2001
2
Implementing clarkwilson integrity policy using current tech.. (context) - the, integrity et al. - 1998
2
Jif: Java information ow (context) - Myers, Nystrom et al. - 2001
1
A type system for robust declassi cation (context) - Zdancewic - 2003
1
Protecting electronic commerce from distributed denial-of-se.. (context) - Brustoloni - 2002
Documents on the same site (http://www.cis.upenn.edu/~stevez/papers/publications.html): More
Principals in Programming Languages: Technical Results - Zdancewic, Grossman (1999)
(Correct)
Secure Program Partitioning - Zdancewic, Zheng, Nystrom, Myers (2002)
(Correct)
Secure Information Flow via Linear Continuations - Zdancewic, Myers (2002)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC