TC: Medium: Collaborative Research: Towards Formal, Risk-Aware Authorization

TC:媒介:协作研究:迈向正式的、具有风险意识的授权

基本信息

  • 批准号:
    0964295
  • 负责人:
  • 金额:
    $ 32.47万
  • 依托单位:
  • 依托单位国家:
    美国
  • 项目类别:
    Continuing Grant
  • 财政年份:
    2010
  • 资助国家:
    美国
  • 起止时间:
    2010-06-01 至 2014-05-31
  • 项目状态:
    已结题

项目摘要

Traditional security authorization decisions are black and white: a user either satisfies a particular access policy or does not. This rigidity is a handicap in our complex and unpredictable world. As a result, even security-conscious organizations typically grossly overprovision principals with access rights and/or underconstrain access policies to ensure that principals can always carry out the organization's mission effectively and respond to unexpected opportunities and challenges. This project focuses on developing dynamic and risk-aware approaches to access control that allow organizations to make security-critical decisions in the face of incomplete information and unexpected circumstances. This is accomplished by combining proof-theoretic access controls with economic models of risk. In the event that the expected proof of authorization for an action cannot be generated, the systems developed in this project carry out an efficient search for similar proofs of authorization that minimize the overall risk incurred by deviating from the expected. This approach allows policies to adapt dynamically to the changing context of the systems in which they are deployed. This research will have several benefits, including increased system availability during disasters or other uncommon cases not explicitly modeled by policies; reduced instances of permission creep, as overprovisioning users is no longer required to ensure that an organization's business needs are met; a quantifiable means of assessing how policies are actually used and how they might be changed to better reflect the evolution of organizations; and the development of metrics for assessing access control risks.
传统的安全授权决策是白色的:用户要么满足特定的访问策略,要么不满足。 在我们这个复杂和不可预测的世界中,这种僵化是一种障碍。 因此,即使是有安全意识的组织通常也会过度向主体提供访问权限和/或限制访问策略,以确保主体始终能够有效地执行组织的使命并对意外的机会和挑战做出响应。 该项目的重点是开发动态和风险意识的访问控制方法,使组织能够在面对不完整的信息和意外情况下做出安全关键决策。 这是通过将证据理论访问控制与风险的经济模型相结合来实现的。 如果无法生成预期的行动授权证明,本项目开发的系统将有效搜索类似的授权证明,从而最大限度地减少因偏离预期而产生的总体风险。 这种方法允许策略动态地适应部署它们的系统的不断变化的上下文。这项研究将有几个好处,包括在发生灾害或政策未明确建模的其他罕见情况下提高系统可用性;减少权限蔓延的情况,因为不再需要过度配置用户来确保满足组织的业务需求;评估政策实际使用情况以及如何改变政策以更好地反映组织的演变的可量化手段;以及制定评估访问控制风险的指标。

项目成果

期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Adam Lee其他文献

Information Network Construction and Alignment from Automatically Acquired Comparable Corpora
自动获取可比语料库的信息网络构建和对齐
  • DOI:
    10.1007/978-3-642-20128-8_13
  • 发表时间:
    2013
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Heng Ji;Adam Lee;Wen
  • 通讯作者:
    Wen
Breath hydrogen after ingestion of the bulk sweeteners sorbitol, isomalt and sucrose in chocolate
摄入巧克力中的大量甜味剂山梨糖醇、异麦芽酮糖醇和蔗糖后呼吸氢气
  • DOI:
  • 发表时间:
    1994
  • 期刊:
  • 影响因子:
    3.6
  • 作者:
    Adam Lee;A. Zumbe;D. Storey
  • 通讯作者:
    D. Storey
Isodicentric Philadelphia chromosomes in imatinib mesylate (Gleevec)-resistant patients
  • DOI:
    10.1016/j.cancergencyto.2006.12.001
  • 发表时间:
    2007-04-15
  • 期刊:
  • 影响因子:
  • 作者:
    Christine M. Szych;Jane L. Liesveld;M. Anwar Iqbal;LiQiong Li;Susan Siebert;Courtney Asmus;Julie O'Malley;Adam Lee;Nancy Wang
  • 通讯作者:
    Nancy Wang
Contrastive Weighted Learning for Near-Infrared Gaze Estimation
  • DOI:
    10.48550/arxiv.2211.03073
  • 发表时间:
    2022-11
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Adam Lee
  • 通讯作者:
    Adam Lee
NOVEL EPICARDIAL-ONLY APPROACH TO LAA LIGATION
  • DOI:
    10.1016/s0735-1097(19)31010-1
  • 发表时间:
    2019-03-12
  • 期刊:
  • 影响因子:
  • 作者:
    Jose M. Sanchez;Adam Lee;Randall Lee
  • 通讯作者:
    Randall Lee

Adam Lee的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

{{ truncateString('Adam Lee', 18)}}的其他基金

Collaborative Research: CNS Core: Medium: The Privacy Backplane - A Full Stack Approach to Individualized Privacy Controls Throughout the Internet-of-Things
合作研究:CNS 核心:媒介:隐私背板 - 整个物联网个性化隐私控制的全栈方法
  • 批准号:
    2211507
  • 财政年份:
    2022
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Continuing Grant
SaTC: CORE: Small: Collaborative: Tangible Privacy: User-Centric Sensor Designs for Assured Privacy
SaTC:核心:小型:协作:有形隐私:以用户为中心的传感器设计,确保隐私
  • 批准号:
    1814866
  • 财政年份:
    2018
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
SaTC: CORE: Medium: Collaborative: Scalable Dynamic Access Control for Untrusted Cloud Environments
SaTC:核心:中:协作:不受信任的云环境的可扩展动态访问控制
  • 批准号:
    1704139
  • 财政年份:
    2017
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
Nanoengineered Materials for Clean Catalytic Technologies
用于清洁催化技术的纳米工程材料
  • 批准号:
    EP/G007594/4
  • 财政年份:
    2014
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Fellowship
Selective photocatalytic conversion of CO2 to olefins: a feasibility study
CO2 选择性光催化转化为烯烃:可行性研究
  • 批准号:
    EP/K029525/2
  • 财政年份:
    2014
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Research Grant
CAREER: UCPriv: User-Centric Privacy Management
职业:UCPriv:以用户为中心的隐私管理
  • 批准号:
    1253204
  • 财政年份:
    2013
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Continuing Grant
Nanoengineered Materials for Clean Catalytic Technologies
用于清洁催化技术的纳米工程材料
  • 批准号:
    EP/G007594/3
  • 财政年份:
    2013
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Fellowship
Selective photocatalytic conversion of CO2 to olefins: a feasibility study
CO2 选择性光催化转化为烯烃:可行性研究
  • 批准号:
    EP/K029525/1
  • 财政年份:
    2013
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Research Grant
TWC: Medium: Collaborative: Foundations of Application-Sensitive Access Control Evaluation
TWC:媒介:协作:应用程序敏感的访问控制评估的基础
  • 批准号:
    1228697
  • 财政年份:
    2012
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Small: Collaborative Research: Improved Privacy though Exposure Control
TC:小:协作研究:通过曝光控制改善隐私
  • 批准号:
    1017229
  • 财政年份:
    2010
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant

相似海外基金

TC: Medium: Collaborative Research: Program Analysis for Smartphone Application Security
TC:媒介:协作研究:智能手机应用程序安全的程序分析
  • 批准号:
    1630037
  • 财政年份:
    2015
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Program Analysis for Smartphone Application Security
TC:媒介:协作研究:智能手机应用程序安全的程序分析
  • 批准号:
    1064646
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Building Trustworthy Applications for Mobile Devices
TC:媒介:协作研究:为移动设备构建值得信赖的应用程序
  • 批准号:
    1064944
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Securing Web Advertisements: Fixing the Short-term Crisis and Addressing Long-term Challenges
TC:媒介:协作研究:保护网络广告:解决短期危机并应对长期挑战
  • 批准号:
    1065216
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Tracking Adversarial Behavior in Distributed Systems with Secure Networked Provenance
TC:中:协作研究:通过安全网络来源跟踪分布式系统中的对抗行为
  • 批准号:
    1065130
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Securing Web Advertisements: Fixing the Short-term Crisis and Addressing Long-term Challenges
TC:媒介:协作研究:保护网络广告:解决短期危机并应对长期挑战
  • 批准号:
    1065537
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Program Analysis for Smartphone Application Security
TC:媒介:协作研究:智能手机应用程序安全的程序分析
  • 批准号:
    1064844
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Tracking Adversarial Behavior in Distributed Systems with Secure Networked Provenance
TC:中:协作研究:通过安全网络来源跟踪分布式系统中的对抗行为
  • 批准号:
    1064986
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Building Trustworthy Applications for Mobile Devices
TC:媒介:协作研究:为移动设备构建值得信赖的应用程序
  • 批准号:
    1064900
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
TC: Medium: Collaborative Research: Random Number Generation and Use in Virtualized Environments
TC:媒介:协作研究:虚拟化环境中的随机数生成和使用
  • 批准号:
    1065288
  • 财政年份:
    2011
  • 资助金额:
    $ 32.47万
  • 项目类别:
    Standard Grant
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了