LIGHT-WEIGHT CONTEXT TRACKING AND REPAIR FOR PREVENTING INTEGRITY AND CONFIDENTIALITY VIOLATIONS

user-613ea93de55422cecdace10f(2021)

引用 0|浏览20
暂无评分
摘要
A computer system performs tracking of security context for confidential or untrusted values input from sources in an executing application to sinks in the executing application. The security context includes indications of sources and declassifier methods corresponding to the values and has been previously defined prior to the tracking. Prior to release of a selected confidential or untrusted value by a sink in the executing application, security context is fetched for the selected confidential or untrusted value. A selected declassifier method is caused to be used on the selected confidential or untrusted value prior to release of the selected confidential or untrusted value to the sink. The selected declassifier method obfuscates the selected confidential or untrusted value and is selected based on the security context for the selected confidential or untrusted value. The obfuscated confidential or untrusted value is caused to be released to the sink in the executing application.
更多
查看译文
关键词
Confidentiality,Computer security,Computer science,Security context
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要