How Powerful Are Run-Time Monitors with Static Information?

被引:1
|
作者
Imanimehr, Fatemeh [1 ]
Fallah, Mehran S. [1 ]
机构
[1] Amirkabir Univ Technol, Tehran Polytech, Dept Comp Engn & Informat Technol, 424 Hafez Ave,POB 15875-4413, Tehran, Iran
来源
COMPUTER JOURNAL | 2016年 / 59卷 / 11期
关键词
enforcement paradigms; run-time monitoring; security policies; static information; SECURITY POLICIES; ENFORCEMENT;
D O I
10.1093/comjnl/bxw022
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Characterizing the security policies enforceable by run-time monitors has received great attention in recent years. The research, however, has been limited to the monitors having no prior knowledge about possible behaviors of the program they monitor and to a specific class of policies known as properties. This paper takes a first step towards identifying the policies, which are enforceable by the run-time monitors statically provided with a possibly inaccurate approximation of the target's possible executions. We define a run-time monitor as taking such an approximation and deriving an automaton that transforms individual executions. To delineate the policies enforceable in this way, we redefine the paradigms of security policy enforcement so that they can be applied to all policies. In particular, we give new classes of effective and precise enforcement and study the policies enforceable in these paradigms.
引用
收藏
页码:1623 / 1636
页数:14
相关论文
共 50 条
  • [1] A Survey on Run-time Power Monitors at the Edge
    Zoni, Davide
    Galimberti, Andrea
    Fornaciari, William
    [J]. ACM COMPUTING SURVEYS, 2023, 55 (14S)
  • [2] Static checker of semantic run-time errors
    Kuksenko, SV
    Shelekhov, VI
    [J]. PROGRAMMING AND COMPUTER SOFTWARE, 1998, 24 (06) : 288 - 300
  • [3] Using Run-Time Information to Enhance Static Analysis of Machine Learning Code in Notebooks
    Wang, Yiran
    Lopez, Jose Antonio Hernandez
    Nilsson, Ulf
    Varro, Daniel
    [J]. COMPANION PROCEEDINGS OF THE 32ND ACM INTERNATIONAL CONFERENCE ON THE FOUNDATIONS OF SOFTWARE ENGINEERING, FSE COMPANION 2024, 2024, : 497 - 501
  • [4] Static Performance Guarantees for Programs with Run-time Checks
    Klemen, Maximiliano
    Stulova, Nataliia
    Lopez-Garcia, Pedro
    Morales, Jose
    Hermenegildo, Manuel V.
    [J]. PPDP'18: PROCEEDINGS OF THE 20TH INTERNATIONAL SYMPOSIUM ON PRINCIPLES AND PRACTICE OF DECLARATIVE PROGRAMMING, 2018,
  • [5] A Methodology to build run-time Monitors for Security-Aware Workflows
    Bertolissi, Clara
    Ranise, Silvio
    [J]. 2013 8TH INTERNATIONAL CONFERENCE FOR INTERNET TECHNOLOGY AND SECURED TRANSACTIONS (ICITST), 2013, : 501 - +
  • [6] A static analysis method for run-time errors detection
    Cao, WJ
    Xu, SH
    Shi, ZG
    [J]. ISTM/2005: 6th International Symposium on Test and Measurement, Vols 1-9, Conference Proceedings, 2005, : 6615 - 6618
  • [7] Static, dynamic and run-time modeling of compound classes
    Agarwal, R
    Bruno, G
    Torchiano, M
    [J]. ACM SIGPLAN NOTICES, 1996, 31 (11) : 49 - 55
  • [8] Run-Time Monitors Design for Adaptive Radar Systems: A Practical Framework
    Cox, Pepijn
    Coutino, Mario
    Papari, Giuseppe
    Sardarabadi, Ahmad Mouri
    Anitori, Laura
    [J]. 2023 IEEE RADAR CONFERENCE, RADARCONF23, 2023,
  • [9] Detecting potential deadlocks with static analysis and run-time monitoring
    Agarwal, R.
    Wang, Liqinng
    Stoller, Scott D.
    [J]. Lect. Notes Comput. Sci, (191-207):
  • [10] Detecting potential deadlocks with static analysis and run-time monitoring
    Agarwal, Rahul
    Wang, Liqiang
    Stoller, Scott D.
    [J]. HARDWARE AND SOFTWARE VERIFICATION AND TESTING, 2006, 3875 : 191 - 207