{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T14:43:44Z","timestamp":1775745824205,"version":"3.50.1"},"publisher-location":"New York, NY, USA","reference-count":47,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,6,7]],"date-time":"2022-06-07T00:00:00Z","timestamp":1654560000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/100000001","name":"National Science Foundation","doi-asserted-by":"publisher","award":["1946273"],"award-info":[{"award-number":["1946273"]}],"id":[{"id":"10.13039\/100000001","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,6,7]]},"DOI":"10.1145\/3532105.3535016","type":"proceedings-article","created":{"date-parts":[[2022,6,8]],"date-time":"2022-06-08T14:29:57Z","timestamp":1654698597000},"page":"19-30","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":7,"title":["A Study of Application Sandbox Policies in Linux"],"prefix":"10.1145","author":[{"given":"Trevor","family":"Dunlap","sequence":"first","affiliation":[{"name":"North Carolina State University, Raleigh, NC, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"William","family":"Enck","sequence":"additional","affiliation":[{"name":"North Carolina State University, Raleigh, NC, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Bradley","family":"Reaves","sequence":"additional","affiliation":[{"name":"North Carolina State University, Raleigh, NC, USA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,6,8]]},"reference":[{"key":"e_1_3_2_2_1_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243842"},{"key":"e_1_3_2_2_2_1","volume-title":"Proceedings of the International Conference for Internet Technology and Secured Transactions. 358--362","author":"Ameiri Faisal Al","year":"2011","unstructured":"Faisal Al Ameiri and Khaled Salah . 2011 . Evaluation of popular application sandboxing . In Proceedings of the International Conference for Internet Technology and Secured Transactions. 358--362 . Faisal Al Ameiri and Khaled Salah. 2011. Evaluation of popular application sandboxing. In Proceedings of the International Conference for Internet Technology and Secured Transactions. 358--362."},{"key":"e_1_3_2_2_3_1","volume-title":"Consh: Confined Execution Environment for Internet Computations.","author":"Alexandrov A.","year":"1998","unstructured":"A. Alexandrov , P. Kmiec , and K. Schauser . 1998 . Consh: Confined Execution Environment for Internet Computations. (1998). A. Alexandrov, P. Kmiec, and K. Schauser. 1998. Consh: Confined Execution Environment for Internet Computations. (1998)."},{"key":"e_1_3_2_2_4_1","volume-title":"Computer Security Technology Planning Study. ESDTR-73--51. Air Force Electronic Systems Division","author":"Anderson J. P.","unstructured":"J. P. Anderson . 1972. Computer Security Technology Planning Study. ESDTR-73--51. Air Force Electronic Systems Division , Hanscom AFB, Bedford, MA . (Also available as Vol. I, DITCAD-758206. Vol. II DITCAD-772806). J. P. Anderson. 1972. Computer Security Technology Planning Study. ESDTR-73--51. Air Force Electronic Systems Division, Hanscom AFB, Bedford, MA. (Also available as Vol. I, DITCAD-758206. Vol. II DITCAD-772806)."},{"key":"e_1_3_2_2_5_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382222"},{"key":"e_1_3_2_2_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/1866307.1866317"},{"key":"e_1_3_2_2_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/2351676.2351722"},{"key":"e_1_3_2_2_8_1","unstructured":"Jon Brodkin. 2016. Linux's RPM\/deb split could be replaced by Flatpak vs. snap. https:\/\/arstechnica.com\/information-technology\/2016\/06\/here-comes-flatpak-a-competitor-to-ubuntus-cross-platform-linux-apps\/  Jon Brodkin. 2016. Linux's RPM\/deb split could be replaced by Flatpak vs. snap. https:\/\/arstechnica.com\/information-technology\/2016\/06\/here-comes-flatpak-a-competitor-to-ubuntus-cross-platform-linux-apps\/"},{"key":"e_1_3_2_2_9_1","unstructured":"BS4 2021. Beautiful Soup. https:\/\/www.crummy.com\/software\/BeautifulSoup\/  BS4 2021. Beautiful Soup. https:\/\/www.crummy.com\/software\/BeautifulSoup\/"},{"key":"e_1_3_2_2_10_1","unstructured":"Bubblewrap 2021. Bubblewrap. https:\/\/github.com\/containers\/bubblewrap.  Bubblewrap 2021. Bubblewrap. https:\/\/github.com\/containers\/bubblewrap."},{"key":"e_1_3_2_2_11_1","volume-title":"Proceedings of the ACM conference on Computer and Communications Security (CCS).","author":"Cappos Justin","unstructured":"Justin Cappos , Justin Samuel , Scott Baker , and John H. Hartman . 2008. A look in the mirror: attacks on package managers . In Proceedings of the ACM conference on Computer and Communications Security (CCS). Justin Cappos, Justin Samuel, Scott Baker, and John H. Hartman. 2008. A look in the mirror: attacks on package managers. In Proceedings of the ACM conference on Computer and Communications Security (CCS)."},{"key":"e_1_3_2_2_12_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Carlini Nicholas","year":"2012","unstructured":"Nicholas Carlini , Adrienne Porter Felt , and David Wagner . 2012 . An Evaluation of the Google Chrome Extension Security Architecture . In Proceedings of the USENIX Security Symposium. Nicholas Carlini, Adrienne Porter Felt, and David Wagner. 2012. An Evaluation of the Google Chrome Extension Security Architecture. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_2_13_1","volume-title":"Proceedings of the USENIX conference on System administration (LISA)","author":"Cowan Crispin","year":"2000","unstructured":"Crispin Cowan , Steve Beattie , Greg Kroah-Hartman , Calton Pu , Perry Wagle , and Virgil Gligor . 2000 . SubDomain: Parsimonious Server Security . In Proceedings of the USENIX conference on System administration (LISA) ( New Orleans, Louisiana). USENIX Association, 355--368. Crispin Cowan, Steve Beattie, Greg Kroah-Hartman, Calton Pu, Perry Wagle, and Virgil Gligor. 2000. SubDomain: Parsimonious Server Security. In Proceedings of the USENIX conference on System administration (LISA) (New Orleans, Louisiana). USENIX Association, 355--368."},{"key":"e_1_3_2_2_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/2046707.2046779"},{"key":"e_1_3_2_2_15_1","volume-title":"Proceedings of the USENIX Workshop on Hot Topics in Security (HotSec).","author":"Felt Adrienne Porter","year":"2012","unstructured":"Adrienne Porter Felt , Serge Egelman , Matthew Finifter , Devdata Akhawe , and David Wagner . 2012 . How to Ask for Permission . In Proceedings of the USENIX Workshop on Hot Topics in Security (HotSec). Adrienne Porter Felt, Serge Egelman, Matthew Finifter, Devdata Akhawe, and David Wagner. 2012. How to Ask for Permission. In Proceedings of the USENIX Workshop on Hot Topics in Security (HotSec)."},{"key":"e_1_3_2_2_16_1","doi-asserted-by":"publisher","DOI":"10.1145\/2335356.2335360"},{"key":"e_1_3_2_2_17_1","unstructured":"Flatkill 2018. Flatpak - a security nightmare. https:\/\/flatkill.org\/  Flatkill 2018. Flatpak - a security nightmare. https:\/\/flatkill.org\/"},{"key":"e_1_3_2_2_18_1","doi-asserted-by":"publisher","DOI":"10.1109\/ACSAC.2008.54"},{"key":"e_1_3_2_2_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/1102120.1102164"},{"key":"e_1_3_2_2_20_1","volume-title":"Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS).","author":"Garfinkel T.","unstructured":"T. Garfinkel , B. Pfaff , and M. Rosenblum . 2004. Ostia: A Delegating Architecture for Secure System Call Interposition . In Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS). T. Garfinkel, B. Pfaff, and M. Rosenblum. 2004. Ostia: A Delegating Architecture for Secure System Call Interposition. In Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS)."},{"key":"e_1_3_2_2_21_1","volume-title":"Proceedings of the on USENIX Security Symposium.","author":"Goldberg Ian","unstructured":"Ian Goldberg , David Wagner , Randi Thomas , and Eric A. Brewer . 1996. A secure environment for untrusted helper applications confining the Wily Hacker . In Proceedings of the on USENIX Security Symposium. Ian Goldberg, David Wagner, Randi Thomas, and Eric A. Brewer. 1996. A secure environment for untrusted helper applications confining the Wily Hacker. In Proceedings of the on USENIX Security Symposium."},{"key":"e_1_3_2_2_22_1","unstructured":"Flatpak Issue. 2020. Home permissions too relaxed and give full permission escalation #3637. https:\/\/github.com\/flatpak\/flatpak\/issues\/3637  Flatpak Issue. 2020. Home permissions too relaxed and give full permission escalation #3637. https:\/\/github.com\/flatpak\/flatpak\/issues\/3637"},{"key":"e_1_3_2_2_23_1","first-page":"2","article-title":"Consistency Analysis of Authorization Hook Placement in the Linux Security Modules Framework","volume":"7","author":"Jaeger Trent","year":"2004","unstructured":"Trent Jaeger , Antony Edwards , and Xiaolan Zhang . 2004 . Consistency Analysis of Authorization Hook Placement in the Linux Security Modules Framework . Transactions on Information and System Security 7 , 2 (May 2004), 175--205. Trent Jaeger, Antony Edwards, and Xiaolan Zhang. 2004. Consistency Analysis of Authorization Hook Placement in the Linux Security Modules Framework. Transactions on Information and System Security 7, 2 (May 2004), 175--205.","journal-title":"Transactions on Information and System Security"},{"key":"e_1_3_2_2_24_1","volume-title":"Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS).","author":"Jain K.","unstructured":"K. Jain and R. Sekar . 2000. User-Level Infrastructure for System Call Interposition: A Platform for Intrusion Detection and Confinement . In Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS). K. Jain and R. Sekar. 2000. User-Level Infrastructure for System Call Interposition: A Platform for Intrusion Detection and Confinement. In Proceedings of the ISOC Network and Distributed Systems Security Symposium (NDSS)."},{"key":"e_1_3_2_2_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3134302.3134312"},{"key":"e_1_3_2_2_26_1","volume-title":"On Package Freshness in Linux Distributions. CoRR abs\/2007.16123","author":"Legay Damien","year":"2020","unstructured":"Damien Legay , Alexandre Decan , and Tom Mens . 2020. On Package Freshness in Linux Distributions. CoRR abs\/2007.16123 ( 2020 ). arXiv:2007.16123 https:\/\/arxiv.org\/abs\/2007.16123 Damien Legay, Alexandre Decan, and Tom Mens. 2020. On Package Freshness in Linux Distributions. CoRR abs\/2007.16123 (2020). arXiv:2007.16123 https:\/\/arxiv.org\/abs\/2007.16123"},{"key":"e_1_3_2_2_27_1","volume-title":"SELinux: NSA's Open Source Security Enhanced Linux","author":"McCarty Bill","unstructured":"Bill McCarty . 2004. SELinux: NSA's Open Source Security Enhanced Linux . O'Reilly Media, Inc. Bill McCarty. 2004. SELinux: NSA's Open Source Security Enhanced Linux. O'Reilly Media, Inc."},{"key":"e_1_3_2_2_28_1","volume-title":"USENIX Security Symposium. ACM Berkeley, CA, 17--31","author":"Morris James","year":"2002","unstructured":"James Morris , Stephen Smalley , and Greg Kroah-Hartman . 2002 . Linux security modules: General security support for the linux kernel . In USENIX Security Symposium. ACM Berkeley, CA, 17--31 . James Morris, Stephen Smalley, and Greg Kroah-Hartman. 2002. Linux security modules: General security support for the linux kernel. In USENIX Security Symposium. ACM Berkeley, CA, 17--31."},{"key":"e_1_3_2_2_29_1","unstructured":"John Paul. 2016. Is Ubuntu's Snap Packaging Really Secure? https:\/\/itsfoss.com\/snap-package-securrity-issue\/  John Paul. 2016. Is Ubuntu's Snap Packaging Really Secure? https:\/\/itsfoss.com\/snap-package-securrity-issue\/"},{"key":"e_1_3_2_2_30_1","unstructured":"Portal Documentation 2021. Portal Documentation. https:\/\/flatpak.github.io\/xdg-desktop-portal\/portal-docs.html.  Portal Documentation 2021. Portal Documentation. https:\/\/flatpak.github.io\/xdg-desktop-portal\/portal-docs.html."},{"key":"e_1_3_2_2_31_1","volume-title":"Sandboxing Applications. In Proceedings of the FREENIX Track: 2001 USENIX Annual Technical Conference.","author":"Prevelakis Vassilis","year":"2001","unstructured":"Vassilis Prevelakis and Diomidis Spinellis . 2001 . Sandboxing Applications. In Proceedings of the FREENIX Track: 2001 USENIX Annual Technical Conference. Vassilis Prevelakis and Diomidis Spinellis. 2001. Sandboxing Applications. In Proceedings of the FREENIX Track: 2001 USENIX Annual Technical Conference."},{"key":"e_1_3_2_2_32_1","volume-title":"Proceedings of the USENIX Security Symposium.","author":"Provos Niels","year":"2003","unstructured":"Niels Provos . 2003 . Improving host security with system call policies . In Proceedings of the USENIX Security Symposium. Niels Provos. 2003. Improving host security with system call policies. In Proceedings of the USENIX Security Symposium."},{"key":"e_1_3_2_2_33_1","unstructured":"PulseAudio. 2016. Access Control. https:\/\/www.freedesktop.org\/wiki\/Software\/PulseAudio\/Documentation\/Developer\/AccessControl\/.  PulseAudio. 2016. Access Control. https:\/\/www.freedesktop.org\/wiki\/Software\/PulseAudio\/Documentation\/Developer\/AccessControl\/."},{"key":"e_1_3_2_2_34_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2012.24"},{"key":"e_1_3_2_2_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/PROC.1975.9939"},{"key":"e_1_3_2_2_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/3029806.3029832"},{"key":"e_1_3_2_2_37_1","unstructured":"Snapcraft. 2021. Supported Interfaces. https:\/\/snapcraf t.io\/docs\/supported-interfaces.  Snapcraft. 2021. Supported Interfaces. https:\/\/snapcraf t.io\/docs\/supported-interfaces."},{"key":"e_1_3_2_2_38_1","volume-title":"Proceedings of the ACM Workshop on Security and Privacy in Smartphones and Mobile Devices (SPSM).","author":"Vincent","unstructured":"Vincent F. Taylor and Ivan Martinovic. 2016. SecuRank: Starving Permission-Hungry Apps Using Contextual Permission Analysis . In Proceedings of the ACM Workshop on Security and Privacy in Smartphones and Mobile Devices (SPSM). Vincent F. Taylor and Ivan Martinovic. 2016. SecuRank: Starving Permission-Hungry Apps Using Contextual Permission Analysis. In Proceedings of the ACM Workshop on Security and Privacy in Smartphones and Mobile Devices (SPSM)."},{"key":"e_1_3_2_2_39_1","unstructured":"Ubuntu 20.04 LTS Release Notes 2020. FocalFossa\/ReleaseNotes - Ubuntu Wiki. https:\/\/wiki.ubuntu.com\/FocalFossa\/ReleaseNotes  Ubuntu 20.04 LTS Release Notes 2020. FocalFossa\/ReleaseNotes - Ubuntu Wiki. https:\/\/wiki.ubuntu.com\/FocalFossa\/ReleaseNotes"},{"key":"e_1_3_2_2_40_1","unstructured":"Steven J. Vaughan-Nichols. 2019. The future of Linux desktop application delivery is Flatpak and Snap. https:\/\/www.zdnet.com\/article\/the-future-of-linux-desktop-application-delivery-is-flatpak-and-snap\/  Steven J. Vaughan-Nichols. 2019. The future of Linux desktop application delivery is Flatpak and Snap. https:\/\/www.zdnet.com\/article\/the-future-of-linux-desktop-application-delivery-is-flatpak-and-snap\/"},{"key":"e_1_3_2_2_41_1","volume-title":"Proceedings of the fourteenth ACM symposium on Operating systems principles.","author":"Wahbe Robert","unstructured":"Robert Wahbe , Steven Lucco , Thomas E. Anderson , and Susan L. Graham . 1993. Efficient software-based fault isolation . In Proceedings of the fourteenth ACM symposium on Operating systems principles. Robert Wahbe, Steven Lucco, Thomas E. Anderson, and Susan L. Graham. 1993. Efficient software-based fault isolation. In Proceedings of the fourteenth ACM symposium on Operating systems principles."},{"key":"e_1_3_2_2_42_1","unstructured":"Jack Wallen. 2020. Why snap and flatpak are so important to Linux. https:\/\/www.techrepublic.com\/article\/why-snap-and-flatpak-are-so-important-to-linux\/  Jack Wallen. 2020. Why snap and flatpak are so important to Linux. https:\/\/www.techrepublic.com\/article\/why-snap-and-flatpak-are-so-important-to-linux\/"},{"key":"e_1_3_2_2_43_1","volume-title":"Quantitative Security Risk Assessment of Android Permissions and Applications","author":"Wang Yang","unstructured":"Yang Wang , Jun Zheng , Chen Sun , and Srinivas Mukkamala . 2013. Quantitative Security Risk Assessment of Android Permissions and Applications . In Data and Applications Security and Privacy XXVII. Springer . Yang Wang, Jun Zheng, Chen Sun, and Srinivas Mukkamala. 2013. Quantitative Security Risk Assessment of Android Permissions and Applications. In Data and Applications Security and Privacy XXVII. Springer."},{"key":"e_1_3_2_2_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/2420950.2420956"},{"key":"e_1_3_2_2_45_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICC.2019.8761572"},{"key":"e_1_3_2_2_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2009.25"},{"key":"e_1_3_2_2_47_1","doi-asserted-by":"publisher","DOI":"10.5555\/647253.720279"}],"event":{"name":"SACMAT '22: The 27th ACM Symposium on Access Control Models and Technologies","location":"New York NY USA","acronym":"SACMAT '22","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 27th ACM on Symposium on Access Control Models and Technologies"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3532105.3535016","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3532105.3535016","content-type":"application\/pdf","content-version":"vor","intended-application":"syndication"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3532105.3535016","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T18:09:14Z","timestamp":1750183754000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3532105.3535016"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2022,6,7]]},"references-count":47,"alternative-id":["10.1145\/3532105.3535016","10.1145\/3532105"],"URL":"https:\/\/doi.org\/10.1145\/3532105.3535016","relation":{},"subject":[],"published":{"date-parts":[[2022,6,7]]},"assertion":[{"value":"2022-06-08","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}