{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T21:40:11Z","timestamp":1750369211122,"version":"3.41.0"},"publisher-location":"Cham","reference-count":32,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319611754"},{"type":"electronic","value":"9783319611761"}],"license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017]]},"DOI":"10.1007\/978-3-319-61176-1_3","type":"book-chapter","created":{"date-parts":[[2017,6,21]],"date-time":"2017-06-21T01:54:25Z","timestamp":1498010065000},"page":"41-62","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["Preventing Unauthorized Data Flows"],"prefix":"10.1007","author":[{"given":"Emre","family":"Uzun","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Gennaro","family":"Parlato","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Vijayalakshmi","family":"Atluri","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Anna Lisa","family":"Ferrara","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Jaideep","family":"Vaidya","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shamik","family":"Sural","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"David","family":"Lorenzi","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2017,6,22]]},"reference":[{"key":"3_CR1","unstructured":"Badger, L., Sterne, D.F., Sherman, D.L., Walker, K.M., Haghighat, S.A.: Practical domain and type enforcement for UNIX. In: IEEE S&P, pp. 66\u201377 (1995)"},{"key":"3_CR2","unstructured":"Bell, D.E., LaPadula, L.J.: Secure computer systems: mathematical foundations. Technical report, DTIC Document (1973)"},{"key":"3_CR3","doi-asserted-by":"crossref","unstructured":"Boebert, W., Young, W., Kaln, R., Hansohn, S.: Secure ADA target: issues, system design, and verification. In: IEEE S&P (1985)","DOI":"10.1109\/SP.1985.10022"},{"key":"3_CR4","doi-asserted-by":"crossref","unstructured":"Boebert, W.E., Kain, R.Y.: A further note on the confinement problem. In: Proceedings Security Technology, pp. 198\u2013202. IEEE (1996)","DOI":"10.1109\/CCST.1996.551864"},{"key":"3_CR5","doi-asserted-by":"crossref","unstructured":"Brucker, A.D., Petritsch, H.: Extending access control models with break-glass. In: SACMAT, pp. 197\u2013206. ACM (2009)","DOI":"10.1145\/1542207.1542239"},{"key":"3_CR6","doi-asserted-by":"crossref","unstructured":"Cheng, W., Zhao, Q., Yu, B., Hiroshige, S.: Tainttrace: efficient flow tracing with dynamic binary rewriting. In: ISCC, pp. 749\u2013754. IEEE (2006)","DOI":"10.1109\/ISCC.2006.158"},{"key":"3_CR7","doi-asserted-by":"crossref","unstructured":"Clause, J., Li, W., Orso, A.: Dytan: a generic dynamic taint analysis framework. In: ISSTA, pp. 196\u2013206. ACM (2007)","DOI":"10.1145\/1273463.1273490"},{"key":"3_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"191","DOI":"10.1007\/978-3-642-19751-2_13","volume-title":"Formal Aspects of Security and Trust","author":"J Crampton","year":"2011","unstructured":"Crampton, J.: Cryptographic enforcement of role-based access control. In: Degano, P., Etalle, S., Guttman, J. (eds.) FAST 2010. LNCS, vol. 6561, pp. 191\u2013205. Springer, Heidelberg (2011)"},{"issue":"5","key":"3_CR9","doi-asserted-by":"publisher","first-page":"236","DOI":"10.1145\/360051.360056","volume":"19","author":"DE Denning","year":"1976","unstructured":"Denning, D.E.: A lattice model of secure information flow. Commun. ACM 19(5), 236\u2013243 (1976)","journal-title":"Commun. ACM"},{"key":"3_CR10","doi-asserted-by":"crossref","unstructured":"Efstathopoulos, P., Krohn, M., VanDeBogart, S., Frey, C., Ziegler, D., Kohler, E., Mazieres, D., Kaashoek, F., Morris, R.: Labels and event processes in the asbestos operating system. In: SOSP, vol. 5, pp. 17\u201330 (2005)","DOI":"10.1145\/1095809.1095813"},{"key":"3_CR11","unstructured":"Enck, W., Gilbert, P., Chun, B.G., Cox, L.P., Jung, J., McDaniel, P., Sheth, A.: Taintdroid: An information-flow tracking system for realtime privacy monitoring on smartphones. In: OSDI, vol. 10, pp. 255\u2013270 (2010)"},{"key":"3_CR12","doi-asserted-by":"crossref","unstructured":"Ene, A., Horne, W., Milosavljevic, N., Rao, P., Schreiber, R., Tarjan, R.E.: Fast exact and heuristic methods for role minimization problems. In: SACMAT, pp. 1\u201310 (2008)","DOI":"10.1145\/1377836.1377838"},{"key":"3_CR13","doi-asserted-by":"crossref","unstructured":"Ferrara, A., Fuchsbauer, G., Warinschi, B.: Cryptographically enforced RBAC. In: CSF, pp. 115\u2013129, June 2013","DOI":"10.1109\/CSF.2013.15"},{"key":"3_CR14","series-title":"Texts in Theoretical Computer Science. An EATCS Series","volume-title":"Parameterized Complexity Theory","author":"J Flum","year":"2006","unstructured":"Flum, J., Grohe, M.: Parameterized Complexity Theory. Texts in Theoretical Computer Science. An EATCS Series. Springer, New York (2006)"},{"key":"3_CR15","unstructured":"Gong, L., Qian, X.: The complexity and composability of secure interoperation. In: 1994 IEEE Computer Society Symposium on Research in Security and Privacy 1994, Proceedings, pp. 190\u2013200. IEEE (1994)"},{"key":"3_CR16","doi-asserted-by":"crossref","unstructured":"Haldar, V., Chandra, D., Franz, M.: Dynamic taint propagation for Java. In: ACSAC, pp. 303\u2013311 (2005)","DOI":"10.1109\/CSAC.2005.21"},{"key":"3_CR17","doi-asserted-by":"crossref","unstructured":"Jaume, M., Tong, V.V.T., M\u00e9, L.: Flow based interpretation of access control: detection of illegal information flows. In: ICISS, pp. 72\u201386 (2011)","DOI":"10.1007\/978-3-642-25560-1_5"},{"key":"3_CR18","doi-asserted-by":"crossref","unstructured":"Krohn, M., Yip, A., Brodsky, M., Cliffer, N., Kaashoek, M.F., Kohler, E., Morris, R.: Information flow control for standard OS abstractions. In: ACM SIGOPS Operating Systems Review, vol. 41, pp. 321\u2013334. ACM (2007)","DOI":"10.1145\/1323293.1294293"},{"key":"3_CR19","doi-asserted-by":"crossref","unstructured":"Lam, L.C., Chiueh, T.: A general dynamic information flow tracking framework for security applications. In: ACSAC, pp. 463\u2013472 (2006)","DOI":"10.1109\/ACSAC.2006.6"},{"issue":"10","key":"3_CR20","doi-asserted-by":"publisher","first-page":"613","DOI":"10.1145\/362375.362389","volume":"16","author":"BW Lampson","year":"1973","unstructured":"Lampson, B.W.: A note on the confinement problem. Commun. ACM 16(10), 613\u2013615 (1973)","journal-title":"Commun. ACM"},{"key":"3_CR21","doi-asserted-by":"crossref","unstructured":"Mao, Z., Li, N., Chen, H., Jiang, X.: Trojan horse resistant discretionary access control. In: SACMAT, pp. 237\u2013246. ACM (2009)","DOI":"10.1145\/1542207.1542244"},{"issue":"3","key":"3_CR22","doi-asserted-by":"publisher","first-page":"24:1","DOI":"10.1145\/2043621.2043624","volume":"14","author":"Z Mao","year":"2011","unstructured":"Mao, Z., Li, N., Chen, H., Jiang, X.: Combining discretionary policy with mandatory information flow in operating systems. ACM TISSEC 14(3), 24:1\u201324:27 (2011)","journal-title":"ACM TISSEC"},{"key":"3_CR23","doi-asserted-by":"crossref","unstructured":"Marinovic, S., Craven, R., Ma, J., Dulay, N.: Rumpole: a flexible break-glass access control model. In: SACMAT, pp. 73\u201382. ACM (2011)","DOI":"10.1145\/1998441.1998453"},{"key":"3_CR24","doi-asserted-by":"crossref","unstructured":"Myers, A.C., Liskov, B.: A decentralized model for information flow control. In: SIGOPS Operating Systems Review, vol. 31, pp. 129\u2013142. ACM (1997)","DOI":"10.1145\/269005.266669"},{"key":"3_CR25","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-658-07365-7","volume-title":"Break-Glass: Handling Exceptional Situations in Access Control","author":"H Petritsch","year":"2014","unstructured":"Petritsch, H.: Break-Glass: Handling Exceptional Situations in Access Control. Springer, Heidelberg (2014)"},{"key":"3_CR26","doi-asserted-by":"crossref","unstructured":"Sze, W.K., Mital, B., Sekar, R.: Towards more usable information flow policies for contemporary operating systems. In: SACMAT (2014)","DOI":"10.1145\/2613087.2613110"},{"key":"3_CR27","doi-asserted-by":"crossref","unstructured":"Sze, W.K., Sekar, R.: Provenance-based integrity protection for windows. In: ACSAC 2015, New York, NY, USA, pp. 211\u2013220. ACM, New York (2015)","DOI":"10.1145\/2818000.2818011"},{"key":"3_CR28","doi-asserted-by":"crossref","unstructured":"Yannakakis, M.: Node-and edge-deletion NP-complete problems. In: Lipton, R.J., Burkhard, W.A., Savitch, W.J., Friedman, E.P., Aho, A.V. (eds.) STOC, pp. 253\u2013264. ACM (1978)","DOI":"10.1145\/800133.804355"},{"issue":"2","key":"3_CR29","doi-asserted-by":"publisher","first-page":"297","DOI":"10.1137\/0210021","volume":"10","author":"M Yannakakis","year":"1981","unstructured":"Yannakakis, M.: Edge-deletion problems. SIAM J. Comput. 10(2), 297\u2013309 (1981)","journal-title":"SIAM J. Comput."},{"key":"3_CR30","doi-asserted-by":"crossref","unstructured":"Zhang, D., Ramamohanrao, K., Ebringer, T.: Role engineering using graph optimisation. In: SACMAT, pp. 139\u2013144 (2007)","DOI":"10.1145\/1266840.1266862"},{"key":"3_CR31","doi-asserted-by":"crossref","unstructured":"Zhu, Y., Jung, J., Song, D., Kohno, T., Wetherall, D.: Privacy scope: a precise information flow tracking system for finding application leaks. Ph.D. thesis, UC, Berkeley (2009)","DOI":"10.1145\/1455770.1455806"},{"key":"3_CR32","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"291","DOI":"10.1007\/978-3-540-39650-5_17","volume-title":"Computer Security \u2013 ESORICS 2003","author":"J Zimmermann","year":"2003","unstructured":"Zimmermann, J., M\u00e9, L., Bidan, C.: An improved reference flow control model for policy-based intrusion detection. In: Snekkenes, E., Gollmann, D. (eds.) ESORICS 2003. LNCS, vol. 2808, pp. 291\u2013308. Springer, Heidelberg (2003). doi:10.1007\/978-3-540-39650-5_17"}],"container-title":["Lecture Notes in Computer Science","Data and Applications Security and Privacy XXXI"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-61176-1_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,19]],"date-time":"2025-06-19T21:06:28Z","timestamp":1750367188000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-61176-1_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"ISBN":["9783319611754","9783319611761"],"references-count":32,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-61176-1_3","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2017]]},"assertion":[{"value":"22 June 2017","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"DBSec","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"IFIP Annual Conference on Data and Applications Security and Privacy","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Philadelphia","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"USA","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2017","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"19 July 2017","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21 July 2017","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"31","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"dbsec2017","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/dbsec2017.ittc.ku.edu\/","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"This content has been made available to all.","name":"free","label":"Free to read"}]}}