(Enter summary)
Abstract: Numerous techniques exist to augment the security
functionality of Commercial Off-The-Shelf (COTS) applications
and operating systems, making them more
suitable for use in mission-critical systems. Although
individually useful, as a group these techniques present
difficulties to system developers because they are not
based on a common framework which might simplify integration
and promote portability and reuse. This paper
presents techniques for developing Generic Software
Wrappers --... (Update)
Similar documents based on text: More All
0.3: LOMAC: Low Water-Mark Integrity Protection for COTS.. - Timothy Fraser Nai (2000)
(Correct)
0.3: Engineering Support Vector Machine Kernels That.. - Zien, Ratsch.. (2000)
(Correct)
0.3: An Architecture and Methodology for the Design and.. - Capobianchi And
(Correct)
Related documents from co-citation: More All
29: A Secure Environment for Untrusted Helper Applications --- Confining the Wily Ha..
- Goldberg, Wagner et al. - 1996
15: Using Kernel Hypervisors to Secure Applications (context) - Mitchem, Lu et al. - 1997
14: Interposition agents: Transparently interposing user code at the system interfac..
- Jones
BibTeX entry: (Update)
Timothy Fraser, Lee Badger, and Mark Feldman. Hardening COTS Software with Generic Software Wrappers. In IEEE Symposium on Security and Privacy, May 1999. http://citeseer.ist.psu.edu/fraser99hardening.html More
@inproceedings{ fraser99hardening,
author = "Timothy Fraser and Lee Badger and Mark Feldman",
title = "Hardening {COTS} Software with Generic Software Wrappers",
booktitle = "{IEEE} Symposium on Security and Privacy",
pages = "2-16",
year = "1999",
url = "citeseer.ist.psu.edu/fraser99hardening.html" }
Citations (may not include all citations):
1363
The Common Object Request Broker Architecture and Specificat.. (context) - Management, Inc et al. - 1995
400
Safety and Performance in the SPIN Operating System (context) - Bershad, Savage et al. - 1995
339
Efficient Software-Based Fault Isolation
- Wahbe, Lucco et al. - 1993
265
Secure Computer System: Unified Exposition and Multics Inter.. (context) - Bell, Padula - 1976
264
Safe Kernel Extensions Without Run-Time Checking
- Necula, Lee - 1996
178
Kerberos: An Authentication Service for Computer Networks (context) - Neuman, Ts'o - 1994
175
Dealing With Disaster: Surviving Misbehaved Kernel Extension..
- Seltzer, Endo et al. - 1996
175
A Secure Environment for Untrusted Helper Applications
- Goldberg, Wagner et al. - 1996
173
A Comparison of Commercial and Military Computer Security Po.. (context) - Clark, Wilson - 1987
153
A Note on the Confinement Problem
- Lampson - 1973
142
A Sense of Self for UNIX Processes
- Forrest, Steven et al. - 1996
120
Integrity Considerations for Secure Computer Systems (context) - Biba - 1977
105
State Transition Analysis: A Rule-Based Intrusion Detection ..
- Ilgun, Kemmerer et al. - 1995
93
The Chinese Wall Security Policy (context) - Brewer, Nash - 1989
74
Self-Nonself Discrimination in a Computer
- Forrest, Perelson et al. - 1994
59
Execution Monitoring of Security-Critical Programs in Distri.. (context) - Ko, Ruschitzka et al. - 1997
54
SLIC: An Extensibility System for Commodity Operating System..
- Ghormley, Petrou et al. - 1998
54
A Practical Alternative to Hierarchical Integrity Policies (context) - Boebert, Kain - 1985
52
Automated detection of vulnerabilities in privileged program..
- Ko, Fink et al. - 1994
35
Department of Defense Trusted Computer System Evaluation Cri.. (context) - Security - 1985
27
Analysis of the SSL (context) - Wagner, Schneier - 1996
23
A Domain and Type Enforcement UNIX Prototype
- Badger, Sterne et al. - 1996
18
Confining Root Programs with Domain and Type Enforcement (context) - Walker, Sterne et al. - 1996
16
A Pattern-Matching Model for Intrusion Detection (context) - Kumar, Spafford - 1994
14
Access Mediation in a Message Passing Kernel (context) - Branstad, Tajalli et al. - 1989
14
An evening with berferd (context) - Cheswick - 1992
11
Intrusion Detection via System Call Traces (context) - Kosoresow, Hofmeyr - 1997
11
A Network Perimeter with Secure External Access
- Avolio, Ranum - 1994
10
A Specification-Based Approach for Building Survivable Syste..
- Sekar, Cai et al. - 1998
6
A real-time intrusion detection system for UNIX (context) - Ilgun - 1993
5
and Intrusion Detection (context) - Ho, Frincke et al. - 1998
2
Security Tool Review: TCP Wrappers (context) - Monroe - 1993
2
Prentice Hall Press (context) - Kernighan, Ritchie et al. - 1998
1
JTF-ATD NGII Composable Services Security Analysis White Pap.. (context) - Sames, Tally - 1998
1
Final Evaluation Report
- Security, XENIX - 1992
The graph only includes citing articles where the year of publication is known.
Documents on the same site (http://www.itd.nrl.navy.mil/ITD/5540/ieee/SP99-Program.html):
Software Smart Cards via Cryptographic Camouflage - Hoover, Kausik (1999)
(Correct)
Firmato: A Novel Firewall Management Toolkit - Bartal, Mayer, Nissim, Wool (1999)
(Correct)
Online articles have much greater impact More about CiteSeer.IST Add search form to your site Submit documents Feedback
CiteSeer.IST - Copyright Penn State and NEC