Advanced Search
CS Search Google Search
Subscribers, please login

Published Articles >> Table of Contents >> Abstract

15th Annual Computer Security Applications Conference (ACSAC '99)   p. 119
Application-Level Isolation Using Data Inconsistency Detection

Full Article Text: Download PDF of full textBuy this articleGet full text from IEEE Xplore

DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/CSAC.1999.816019
Send link to a friend

Abstract
Recently, application-level isolation was introduced as an effective means of containing the damage that a suspicious user could inflict on data. In most cases, only a subset of the data items needs to be protected from damage due to the criticality level or integrity requirements of the data items. In such a case, complete isolation of a suspicious user can consume more resources than necessary. This paper proposes partitioning the data items into categories based on their criticality levels and integrity requirements; these categories determine the allowable data flows between trustworthy and suspicious users. An algorithm, that achieves good performance when the number of data items is small, is also provided to detect inconsistencies between suspicious versions of the data and the main version.
Additional Information
Index Terms- Security, Intrusion Detection, Isolation, databases, Information Warfare

Citation:  Amgad Fayad, Sushil Jajodia, Catherine D. McCollum, "Application-Level Isolation Using Data Inconsistency Detection," acsac, p. 119,  15th Annual Computer Security Applications Conference (ACSAC '99),  1999

Similar Articles

Abstract Contents
Abstract
Index Terms
Citation




Free access to

  • Abstracts
  • Selected PDFs

Electronic subscribers login to:

  • Access HTML/PDFs of full text articles

Subscription information

Get a Web account

PDFs require Adobe Acrobat Reader.

Peer Review Notice

Give us Feedback