Authors
Andrei Sabelfeld, David Sands
Publication date
2005/6/20
Conference
18th IEEE Computer Security Foundations Workshop (CSFW'05)
Pages
255-269
Publisher
IEEE
Description
Computing systems often deliberately release (or declassify) sensitive information. A principal security concern for systems permitting information release is whether this release is safe: is it possible that the attacker compromises the information release mechanism and extracts more secret information than intended? While the security community has recognised the importance of the problem, the state-of-the-art in information release is, unfortunately, a number of approaches with somewhat unconnected semantic goals. We provide a road map of the main directions of current research, by classifying the basic goals according to what information is released, who releases information, where in the system information is released, and when information can be released. With a general declassification framework as a long-term goal, we identify some prudent principles of declassification. These principles shed light on …
Total citations
20042005200620072008200920102011201220132014201520162017201820192020202120222023202421528363032261616161526121181379971
Scholar articles
A Sabelfeld, D Sands - 18th IEEE Computer Security Foundations Workshop …, 2005