{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,1]],"date-time":"2026-06-01T19:54:51Z","timestamp":1780343691193,"version":"3.54.1"},"publisher-location":"New York, NY, USA","reference-count":54,"publisher":"ACM","license":[{"start":{"date-parts":[[2021,6,11]],"date-time":"2021-06-11T00:00:00Z","timestamp":1623369600000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/100000001","name":"NSF (National Science Foundation)","doi-asserted-by":"publisher","award":["1750024, 1955228"],"award-info":[{"award-number":["1750024, 1955228"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2021,6,11]]},"DOI":"10.1145\/3450569.3463567","type":"proceedings-article","created":{"date-parts":[[2021,6,12]],"date-time":"2021-06-12T04:06:33Z","timestamp":1623470793000},"page":"175-186","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":10,"title":["SCIFFS: Enabling Secure Third-Party Security Analytics using Serverless Computing"],"prefix":"10.1145","author":[{"given":"Isaac","family":"Polinsky","sequence":"first","affiliation":[{"name":"North Carolina State University, Raleigh, NC, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Pubali","family":"Datta","sequence":"additional","affiliation":[{"name":"University of Illinois at Urbana-Champaign, Champaign, IL, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Adam","family":"Bates","sequence":"additional","affiliation":[{"name":"University of Illinois at Urbana-Champaign, Champaign, IL, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"William","family":"Enck","sequence":"additional","affiliation":[{"name":"North Carolina State University, Raleigh, NC, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2021,6,11]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Accidental Data Breaches Are on the Rise","unstructured":"2021. Accidental Data Breaches Are on the Rise; Corporate Email Is a Leading Cause. https:\/\/www.darkreading.com\/attacks-breaches\/accidental-data-breaches-are-on-the-rise-corporate-email-is-a-leading-cause\/d\/d-id\/1336579."},{"key":"e_1_3_2_1_2_1","unstructured":"2021. Bubblewrap. https:\/\/github.com\/containers\/bubblewrap."},{"key":"e_1_3_2_1_3_1","unstructured":"2021. Chronicle Backstory. https:\/\/go.chronicle.security\/hubfs\/Backstory_WP.pdf."},{"key":"e_1_3_2_1_4_1","unstructured":"2021. Cisco Managed Detection and Response. https:\/\/www.cisco.com\/c\/m\/en_us\/customer-experience\/operate\/managed-detection-and-response.html."},{"key":"e_1_3_2_1_5_1","unstructured":"2021. Cybereason Managed Detection and Response. https:\/\/www.cybereason.com\/services\/managed-detection-response-mdr."},{"key":"e_1_3_2_1_6_1","unstructured":"2021. GraphJin. https:\/\/graphjin.com\/."},{"key":"e_1_3_2_1_7_1","unstructured":"2021. GraphQL. https:\/\/graphql.org\/."},{"key":"e_1_3_2_1_8_1","unstructured":"2021. Mandiant Managed Detection and Response. https:\/\/www.fireeye.com\/mandiant\/managed-detection-and-response.html."},{"key":"e_1_3_2_1_9_1","unstructured":"2021. Oops! Facebook just leaked developers' confidential data. https:\/\/www.tucsonpost.com\/news\/257554066\/oops-facebook-just-leaked-developers-confidential-data."},{"key":"e_1_3_2_1_10_1","unstructured":"2021. Open XDR - the Intelligent Next Gen Security Operations Platform. https:\/\/stellarcyber.ai\/products\/open-xdr-security-operations-platform\/."},{"key":"e_1_3_2_1_11_1","unstructured":"2021. OpenFaaS. https:\/\/www.openfaas.com\/."},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/3276488"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3024086"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/2465106.2465121"},{"key":"e_1_3_2_1_16_1","unstructured":"Brad Smith. 2021. A moment of reckoning: the need for a strong and global cybersecurity response. https:\/\/blogs.microsoft.com\/on-the-issues\/2020\/12\/17\/cyberattacks-cybersecurity-solarwinds-fireeye\/."},{"key":"e_1_3_2_1_17_1","volume-title":"Proceedings of the Annual Computer Security Applications Conference (ACSAC). 322--331","author":"Capizzi Roberto","unstructured":"Roberto Capizzi, Antonio Longo, V. N. Venkatakrishnan, and A. Prasad Sistla. 2008. Preventing Information Leaks through Shadow Executions. In Proceedings of the Annual Computer Security Applications Conference (ACSAC). 322--331."},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1145\/3297280.3297469"},{"key":"e_1_3_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/3369583.3392683"},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/3366423.3380173"},{"key":"e_1_3_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382275"},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/360051.360056"},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1145\/359636.359712"},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.15"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/1095810.1095813"},{"key":"e_1_3_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1109\/EuroSP.2019.00016"},{"key":"e_1_3_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/1809842.1809870"},{"key":"e_1_3_2_1_28_1","volume-title":"Guarding Serverless Applications with SecLambda. arxiv","author":"Jegan Deepak Sirone","year":"2011","unstructured":"Deepak Sirone Jegan, Liang Wang, Siddhant Bhagat, Thomas Ristenpart, and Michael Swift. 2020. Guarding Serverless Applications with SecLambda. arxiv: 2011.05322 [cs.CR]"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1145\/3127479.3128601"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/CLOUD.2018.00063"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2009.23"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/1294261.1294293"},{"key":"e_1_3_2_1_33_1","volume-title":"Proceedings of the ACM SIGOPS Symposium on Operating Systems Principles (SOSP). 321--334","author":"Liu Jed","unstructured":"Jed Liu, Michael D. George, K. Vikram, Xin Qi, Lucas Waye, and Andrew C. Myers. 2009. Fabric: A Platform for Secure Distributed Computation and Storage. In Proceedings of the ACM SIGOPS Symposium on Operating Systems Principles (SOSP). 321--334."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1145\/3317550.3321425"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1002\/spe.4380220805"},{"key":"e_1_3_2_1_36_1","volume-title":"Proceedings of the USENIX Conference on Security Symposium (SEC). 1463--1479","author":"Mehta Aastha","year":"2017","unstructured":"Aastha Mehta, Eslam Elnikety, Katura Harvey, Deepak Garg, and Peter Druschel. 2017. Qapla: Policy Compliance for Database-Backed Systems. In Proceedings of the USENIX Conference on Security Symposium (SEC). 1463--1479."},{"key":"e_1_3_2_1_37_1","unstructured":"Mike Sconzo. 2021. DNS. https:\/\/www.secrepo.com\/Datasets%20Description\/Network\/dns.html."},{"key":"e_1_3_2_1_38_1","volume-title":"Proceedings of the ACM Symposium on Operating Systems Principles (SOSP). 129--142","author":"Andrew","unstructured":"Andrew C. Myers and Barbara Liskov. 1997. A Decentralized Model for Information Flow Control. In Proceedings of the ACM Symposium on Operating Systems Principles (SOSP). 129--142."},{"key":"e_1_3_2_1_39_1","volume-title":"Proceedings of the USENIX Conference on Security Symposium (SEC). 1119--1136","author":"Nadkarni Adwait","year":"2016","unstructured":"Adwait Nadkarni, Benjamin Andow, William Enck, and Somesh Jha. 2016. Practical DIFC Enforcement on Android. In Proceedings of the USENIX Conference on Security Symposium (SEC). 1119--1136."},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516677"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/3290388"},{"key":"e_1_3_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1109\/TCC.2015.2489211"},{"key":"e_1_3_2_1_43_1","volume-title":"Proceedings of the USENIX Symposium on Networked Systems Design and Implementation (NSDI). 193--206","author":"Pu Qifan","year":"2019","unstructured":"Qifan Pu, Shivaram Venkataraman, and Ion Stoica. 2019. Shuffling, Fast and Slow: Scalable Analytics on Serverless Infrastructure. In Proceedings of the USENIX Symposium on Networked Systems Design and Implementation (NSDI). 193--206."},{"key":"e_1_3_2_1_44_1","unstructured":"Rich Jones. 2021. Gone in 60 Milliseconds: Intrusion and Exfiltration in Server-less Architectures. https:\/\/media.ccc.de\/v\/33c3--7865-gone_in_60_milliseconds."},{"key":"e_1_3_2_1_45_1","unstructured":"Roberto Rodriguez. 2021. The Threat Hunter Playbook. https:\/\/threathunterplaybook.com\/introduction.html."},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1145\/3284028.3284029"},{"key":"e_1_3_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/3427228.3427665"},{"key":"e_1_3_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1145\/2465351.2465357"},{"key":"e_1_3_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.1145\/2034675.2034688"},{"key":"e_1_3_2_1_50_1","volume-title":"Proceedings of the USENIX Conference on Networked Systems Design and Implementation (NSDI). 615--629","author":"Wang Frank","year":"2019","unstructured":"Frank Wang, Ronny Ko, and James Mickens. 2019. Riverbed: Enforcing User-Defined Privacy Constraints in Distributed Web Services. In Proceedings of the USENIX Conference on Networked Systems Design and Implementation (NSDI). 615--629."},{"key":"e_1_3_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1145\/2908080.2908098"},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1145\/2103656.2103669"},{"key":"e_1_3_2_1_53_1","volume-title":"Proceedings of the USENIX Conference on Networked Systems Design and Implementation (NSDI). 159--172","author":"Yumerefendi Aydan R.","unstructured":"Aydan R. Yumerefendi, Benjamin Mickle, and Landon P. Cox. 2007. Tightlip: Keeping Applications from Spilling the Beans. In Proceedings of the USENIX Conference on Networked Systems Design and Implementation (NSDI). 159--172."},{"key":"e_1_3_2_1_54_1","volume-title":"Proceedings of the USENIX Symposium on Operating Systems Design and Implementation (OSDI). 263--278","author":"Zeldovich Nickolai","year":"2006","unstructured":"Nickolai Zeldovich, Silas Boyd-Wickizer, Eddie Kohler, and David Mazi\u00e8res. 2006. Making Information Flow Explicit in HiStar. In Proceedings of the USENIX Symposium on Operating Systems Design and Implementation (OSDI). 263--278."},{"key":"e_1_3_2_1_55_1","volume-title":"Proceedings of the USENIX Symposium on Networked Systems Design and Implementation (NSDI). 293--308","author":"Zeldovich Nickolai","year":"2008","unstructured":"Nickolai Zeldovich, Silas Boyd-Wickizer, and David Mazi\u00e8res. 2008. Securing Distributed Systems with Information Flow Control. In Proceedings of the USENIX Symposium on Networked Systems Design and Implementation (NSDI). 293--308."}],"event":{"name":"SACMAT '21: The 26th ACM Symposium on Access Control Models and Technologies","location":"Virtual Event Spain","acronym":"SACMAT '21","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 26th ACM Symposium on Access Control Models and Technologies"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3450569.3463567","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3450569.3463567","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3450569.3463567","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T20:47:50Z","timestamp":1750193270000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3450569.3463567"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021,6,11]]},"references-count":54,"alternative-id":["10.1145\/3450569.3463567","10.1145\/3450569"],"URL":"https:\/\/doi.org\/10.1145\/3450569.3463567","relation":{},"subject":[],"published":{"date-parts":[[2021,6,11]]},"assertion":[{"value":"2021-06-11","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}