| Polaris: virus-safe computing for Windows XP |
| Full text |
Html
(32 KB),
Pdf
(356 KB)
|
Source
|
Communications of the ACM
archive
Volume 49 , Issue 9 (September 2006)
table of contents
Privacy and security in highly dynamic systems
Pages: 83 - 88
Year of Publication: 2006
ISSN:0001-0782
|
|
Authors
|
|
| Publisher |
|
| Bibliometrics |
Downloads (6 Weeks): 18, Downloads (12 Months): 121, Citation Count: 4
|
|
|
ABSTRACT
It limits the damage a virus can do by using the operating system's own security mechanisms to enforce the Principle of Least Authority on individual applications.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
Close, T., Stiegler, M., and Karp, A. Shatter-proofing Windows. In Black Hat USA 2005 (Las Vegas, July 23, 2005); www.blackhat.com/presentations/bh-usa-05/BH_US_05-Close/tylerclose_whitepaper_US05.pdf.
|
 |
2
|
|
| |
3
|
Kim, S. Java Web Start: Developing and Distributing Java Applications for the Client Side. White Paper, IBM Corp. Armonk, NY, Sept. 1, 2001; www-106.ibm.com/developerworks/java/library/j-webstart/.
|
| |
4
|
|
| |
5
|
Microsoft Corp. 10 Immutable Laws of Security. Redmond, WA; www.microsoft.com/technet/archive/community/columns/security/essays/10imlaws.mspx.
|
| |
6
|
Microsoft Corp. Developer Best Practices and Guidelines for Applications in a Least Privileged Environment: Understanding User Account Protection in Microsoft Windows Vista Beta 1, Windows Security Access Control. Redmond, WA, Sept. 2005; msdn.microsoft.com/windowsvista/ default.aspx?pull=/library/en-us/dnlong/html/AccProtVista.asp.
|
| |
7
|
Paget, C. Click next to continue. In Black Hat 2003 (Las Vegas, July 2003); blackhat.com/html/bh-media-archives/bh-archives-2003. html#USA-2003.
|
| |
8
|
Stiegler, M. An introduction to petname systems. In Advances in Financial Cryptography, Volume 2, I. Grigg, Ed., 2005; www.financialcryptography.com/mt/archives/000499.html.
|
| |
9
|
Stiegler, M. and Miller, M. A Capability-based Client: The DarpaBrowser. Technical Report, Focused Research Topic 5. Combex, Inc., Meadowbrook, PA, June 2002; www.combex.com/papers/darpa-report/index.html.
|
| |
10
|
U.S. General Accounting Office. Technology Assessment: Cybersecurity for Critical Infrastructure Protection. GAO-04-321, Washington, D.C., May 2004, 27.
|
| |
11
|
Websense Security Laboratories. Cyber Extortion Attack. May 2005; www.websensesecuritylabs.com/alerts/alert.php?AlertID=194.
|
| |
12
|
|
 |
13
|
|
| |
14
|
Miller, M. and Shapiro, J. Paradigm regained: Abstraction mechanisms for access control. In Proceedings of the Eighth Asian Computing Science Conference (ASIAN 2003) (Mumbai, India, Dec. 10--13). Tata Institute of Fundamental Research, Mumbai India, 2003, 224--242; erights.org/ talks/thesis/index.html.
|
| |
15
|
Saltzer, H. and Schroeder, M. The protection of information in computer systems. Proceedings of the IEEE 63, 9 (Sept. 1975), 1278--1308.
|
CITED BY 4
|
|
|
|
|
Nathaniel S. Good , Jens Grossklags , Deirdre K. Mulligan , Joseph A. Konstan, Noticing notice: a large-scale experiment on the timing of software license agreements, Proceedings of the SIGCHI conference on Human factors in computing systems, April 28-May 03, 2007, San Jose, California, USA
|
|
|
|
|
|
|
|