Limiting the Damage Potential of Discretionary Trojan Horses

Limiting the Damage Potential of Discretionary Trojan Horses
复制标题

限制任意特洛伊木马的潜在损害

DOI:
10.1109/sp.1987.10011
复制
发表时间:
1987
期刊:
1987 IEEE Symposium on Security and Privacy
影响因子:
--
通讯作者:
P. Karger
P. Karger
中科院分区:
--
文献类型:
--
作者:
P. Karger

文献摘要

被引文献

相似文献

许多自行决定的特洛伊木马攻击都可以通过表驱动的文件名转换机制来抵御,该机制了解计算机系统的正常使用模式。文件名转换内置于一个受保护的子系统中,并向人类用户询问可能违反自主访问控制策略的情况。该技术是最有效的防止未经授权的篡改或破坏,并可以与非自由裁量权的安全控制结合使用。
Many discretionary Trojan Horse attacks can be defeated by a table-driven file name translation mechanism that has knowledge of the normal patterns of use of a computer system. File name translation is built into a protected subsystem, and the human user is queried about possible violations of discretionary access control policies. The technique is most effective against unauthorized tampering or sabotage and can be used in conjunction with non-discretionary security controls.