See this document in CiteSeerX!

Information Integrity Policies (2003)  (Make Corrections)  (2 citations)
Peng Li Yun Mao Steve Zdancewic University of Pennsylvania



  Home/Search   Context   Related

 
View or download:
upenn.edu/~stevez/papers/./LMZ03.ps
Cached:  PS.gz  PS  PDF   Image  Update  Help

From:  upenn.edu/~stevez/...publications (more)
(Enter author homepages)

Rate this article: (best)
  Comment on this article  
(Enter summary)

Abstract: Information integrity policies are traditionally enforced by access control mechanisms that prevent unauthorized users from modifying data. However, access control does not provide end-to-end assurance of integrity. For that reason, integrity guarantees in the form of noninterference assertions have been proposed. Despite the appeals of such information-ow based approaches to integrity, that solution is also unsatisfactory because it leads to a weaker notion of integrity than needed in... (Update)

Cited by:   More
Run-time Principals in Information-flow Type Systems - Stephen Tse Steve (2004)   (Correct)

Active bibliography (related documents):   More   All
1.7:   A Type System for Robust Declassification - Zdancewic (2003)   (Correct)
0.5:   Manifest Security for Distributed Information - Crary, Harper, Pfenning.. (2006)   (Correct)
0.5:   The Specification and Implementation of `Commercial' Security.. - Simon Foley (1997)   (Correct)

Similar documents based on text:   More   All
0.2:   A Theory of Aspects - Walker, Zdancewic, Ligatti (2003)   (Correct)
0.2:   Secure Information Flow and CPS - Zdancewic, Myers (2001)   (Correct)
0.2:   Integrity Mechanisms in Database Management Systems - Sandhu, Jajodia (1990)   (Correct)

Related documents from co-citation:   More   All
2:   A Core Calculus of Dependency - Abadi, Banerjee et al. - 1999
2:   The SLam calculus: Programming with secrecy and integrity - Heintze, Riecke - 1998
2:   safe information flow with decentralized labels (context) - Myers, Liskov - 1998

BibTeX entry:   (Update)

P. Li, Y. Mao, and S. Zdancewic. Information integrity policies. In Proceedings of the Workshop on Formal Aspects in Security & Trust (FAST), Sept. 2003. http://citeseer.ist.psu.edu/article/li03information.html   More

@misc{ li03information,
  author = "P. Li and Y. Mao and S. Zdancewic",
  title = "Information integrity policies",
  text = "P. Li, Y. Mao, and S. Zdancewic. Information integrity policies. In Proceedings
    of the Workshop on Formal Aspects in Security & Trust (FAST), Sept. 2003.",
  year = "2003",
  url = "citeseer.ist.psu.edu/article/li03information.html" }
Citations (may not include all citations):
650   An axiomatic basis for computer programming (context) - Hoare - 1969
566   Proof-carrying code - Necula - 1997
192   Designing programs that check their work - Blum, Kannan - 1995
173   A comparison of commercial and military computer security po.. (context) - Clark, Wilson - 1987
170   Security policies and security models (context) - Goguen, Meseguer - 1982
124   Protection in operating systems (context) - Harrison, Ruzzo et al. - 1976
120   Integrity considerations for secure computer systems (context) - Biba - 1977
100   Programming semantics for multiprogrammed computations - Dennis, VanHorn - 1966
85   The SLam calculus: Programming with secrecy and integrity - Heintze, Riecke - 1998
64   Detecting format string vulnerabilities with type quali ers - Shankar, Talwar et al. - 2001
51   Security in Computing (context) - eeger - 1997
41   Protecting privacy using the decentralized label model - Myers, Liskov - 2000
28   The costs and limits of availability for replicated services - Yu, Vahdat - 2001
27   A sound type system for secure ow analysis (context) - Volpano, rey et al. - 1996
25   A case for redundant arrays of inexpensive disks (context) - Patterson, Gibson et al. - 1988
24   Secure computer system: Uni ed exposition and Multics interp.. (context) - Bell, LaPadula - 1975
20   Ecient software-based fault isolation (context) - Wahbe, Lucco et al. - 1993
20   Disconnected operation in the coda le system (context) - Kistler, Satyanarayanan - 1992
19   Stack inspection: Theory and variants (context) - Fournet, Gordon - 2002
16   The security architecture formerly known as stack inspection.. (context) - Wallach, Appel et al. - 2000
10   Language-based information- ow security (context) - Sabelfeld, Myers - 2003
10   Certi cation of Programs for Secure Information Flow (context) - Denning, Denning - 1977
8   Information ow inference for free (context) - cois, Sylvain - 2000
7   JFlow: Practical mostly-static information ow control (context) - Myers - 1999
7   Also available as TR 99-1759 (context) - Schneider, policies et al. - 2001
7   The Correctness Problem in Computer Science (context) - Boyer, Moore - 1981
6   MiSFIT: A tool for constructing safe extensible c++ systems (context) - Small - 1997
6   Secure program partitioning - Zdancewic, Zheng et al. - 2002
5   Using mandatory integrity to enforce \commercial (context) - Lee - 1988
5   Building secure distributed systems using replication and pa.. (context) - Zheng, Chong et al. - 2003
4   Monitoring and checking framework for run-time correctness a.. - Lee, Ben-Abdallah et al. - 1998
4   commercial (context) - Foley, cation et al. - 1997
4   HYDRA: The kernel of a multiprocessor system (context) - Wulf, Cohen et al. - 1974
3   Security models and information ow (context) - McLean - 1990
3   A nonfunctional approach to system integrity (context) - Foley - 2003
3   Robust declassi cation (context) - Zdancewic, Myers - 2001
2   Implementing clarkwilson integrity policy using current tech.. (context) - the, integrity et al. - 1998
2   Jif: Java information ow (context) - Myers, Nystrom et al. - 2001
1   A type system for robust declassi cation (context) - Zdancewic - 2003
1   Protecting electronic commerce from distributed denial-of-se.. (context) - Brustoloni - 2002

Documents on the same site (http://www.cis.upenn.edu/~stevez/papers/publications.html):   More
Principals in Programming Languages: Technical Results - Zdancewic, Grossman (1999)   (Correct)
Secure Program Partitioning - Zdancewic, Zheng, Nystrom, Myers (2002)   (Correct)
Secure Information Flow via Linear Continuations - Zdancewic, Myers (2002)   (Correct)

Online articles have much greater impact   More about CiteSeer.IST   Add search form to your site   Submit documents   Feedback  

CiteSeer.IST - Copyright Penn State and NEC