Compatible and Usable Mandatory Access Control for Good-enough OS Security

09/03/2016
by   Zhiyong Shan, et al.
0

OS compromise is one of the most serious computer security problems today, but still not being resolved. Although people proposed different kinds of methods, they could not be accepted by most users who are non-expert due to the lack of compatibility and usability. In this paper, we introduce a kind of new mandatory access control model, named CUMAC, that aims to achieve good-enough security, high compatibility and usability. It has two novel features. One is access control based on tracing potential intrusion that can reduce false negatives and facilitate security configuration, in order to improve both compatibility and usability; the other is automatically figuring out all of the compatibility exceptions that usually incurs incompatible problems. The experiments performed on the prototype show that CUMAC can defense attacks from network, mobile disk and local untrustable users while keeping good compatibility and usability.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/01/2016

Suspicious-Taint-Based Access Control for Protecting OS from Network Attacks

Today, security threats to operating systems largely come from network. ...
research
01/20/2022

CoAvoid: Secure, Privacy-Preserved Tracing of Contacts for Infectious Diseases

To fight against infectious diseases (e.g., SARS, COVID-19, Ebola, etc.)...
research
07/18/2018

Security Mental Model: Cognitive map approach

Security models have been designed to ensure data is accessed and used i...
research
11/29/2022

Guiding Neural Entity Alignment with Compatibility

Entity Alignment (EA) aims to find equivalent entities between two Knowl...
research
10/01/2019

IDEAIS: Smart Voice Assistants to Improve Interaction with SDIs

A critical goal, is that organizations and citizens can easily access th...
research
07/03/2018

Rethinking Misalignment to Raise the Bar for Heap Pointer Corruption

Heap layout randomization renders a good portion of heap vulnerabilities...
research
02/12/2021

Neural Network Libraries: A Deep Learning Framework Designed from Engineers' Perspectives

While there exist a plethora of deep learning tools and frameworks, the ...

Please sign up or login with your details

Forgot password? Click here to reset