课题基金 / 基金详情

Security enforcement for resource-constrained systems

Security enforcement for resource-constrained systems
资源受限系统的安全实施
批准号:
402233-2011
负责人:
Talhi, Chamseddine
金额:
$1.38万
依托单位国家:
加拿大
项目类别:
Discovery Grants Program - Individual
财政年份:
2015
资助国家:
加拿大
项目状态:
已结题
起止时间:
2015-01-01 至 2016-12-31

项目摘要

项目成果

Talhi, Chamseddine的其他基金

相似基金

相关文献

中文摘要
翻译
背景:致力于改进安全执行体系结构的大部分努力都是以牺牲系统资源为特点的。然而,这种方法不再适用于专用于移动设备(例如,移动电话和智能手机)的信息系统,其特征是具有严格的存储器和功率限制。 目标:长期目标是探索新的方法,以便在资源受限的系统上有效地执行安全政策。短期目标是:(1)分析移动系统的安全性,以评估漏洞和潜在风险,了解应实施的安全策略,并确定有效实施的机会;(2)正式确定安全实施的特征,以调查可实施的安全策略和受限的安全实施;以及(3)定义特定于域的语言,以指定安全策略并提供有效实施安全策略所需的适当机制。 科学方法:该研究计划的目标是调查与资源受限系统的安全相关的重要问题。本研究针对的一个重要问题是分析这些系统的安全性。目标是达到(1)威胁移动系统的安全攻击,(2)促进其实现的漏洞,以及(3)潜在风险的最完整的愿景。这种分析的结果将被用来生成要执行的安全策略的分类。目标执行机制将建立在允许评价所需资源和确定优化机会的正式基础之上。此外,还将在提出的形式化模型和高级安全策略规范语言之间架起一座桥梁。将定义适当的语言,以允许指定安全策略及其在移动系统上的有效执行。当嵌入到移动应用程序中时,将生成和优化通用强制执行机制。
英文摘要
Context: The majority of efforts devoted to improve security enforcement architectures have been characterized by sacrificing system resources. However, such approach is no longer appropriate for information systems dedicated to mobile devices (e.g., mobile phones and smartphones), which are characterized by strict memory and power limitations. Objectives: The long-term objective is the exploration of new approaches to allow efficient enforcement of security policies on resource constrained systems. The short-term objectives are (1) analyzing the security of mobile systems to evaluate the vulnerabilities and assess the underlying risks, understand security policies that should be enforced, and identify opportunities for efficient enforcement, (2) formally characterizing security enforcement to investigate enforceable security policies and constrained security enforcement, and (3) defining domain-specific languages for specifying security policies and providing the appropriate mechanisms required for enforcing them efficiently. Scientific Approach: This research program targets the investigation of important issues related to the security of resource-constrained systems. One important issue targeted by the research is analyzing the security of these systems. The objective is to reach the most complete vision of (1) the security attacks threatening mobile systems, (2) the vulnerabilities facilitating their achievement, and (3) the underlying risks. The results of such analysis will be leveraged to generate a classification of security policies to be enforced. The target enforcement mechanisms will be built on top of formal foundations allowing the evaluation of required resources as well as identification of optimization opportunities. In addition, a bridge will be built between the proposed formal models and high-level security policies specification languages. Appropriate languages will be defined to allow specifying security policies and their efficient enforcement on mobile systems. Generic enforcement mechanisms will be generated and optimized when embedded inside mobile applications.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
Context Aware and Extendable Mobile Security Mechanisms
  • 批准号:
    RGPIN-2017-05422
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $1.68万
  • 财政年份:
    2022
  • 负责人:
    Talhi, Chamseddine
  • 依托单位:
Context Aware and Extendable Mobile Security Mechanisms
  • 批准号:
    RGPIN-2017-05422
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $1.68万
  • 财政年份:
    2021
  • 负责人:
    Talhi, Chamseddine
  • 依托单位:
Context Aware and Extendable Mobile Security Mechanisms
  • 批准号:
    RGPIN-2017-05422
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $1.68万
  • 财政年份:
    2020
  • 负责人:
    Talhi, Chamseddine
  • 依托单位:
Context Aware and Extendable Mobile Security Mechanisms
  • 批准号:
    RGPIN-2017-05422
  • 项目类别:
    Discovery Grants Program - Individual
  • 资助金额:
    $1.68万
  • 财政年份:
    2019
  • 负责人:
    Talhi, Chamseddine
  • 依托单位:
海外基金