TC: Small: Collaborative Research: An Argumentation-based Framework for Security Management
TC:小型:协作研究:基于论证的安全管理框架
基本信息
- 批准号:1118077
- 负责人:
- 金额:$ 24.9万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2011
- 资助国家:美国
- 起止时间:2011-08-01 至 2015-07-31
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
Computer users are increasingly faced with decisions that impact their personal privacy and the security of the systems they manage. The range of users confronting these challenges has broadened from the early days of computing to include everyone from home users to administrators of large enterprise networks. Privacy policies are frequently obscure, and security settings are typically complex. Missing from the options presented to a user is a decision support mechanism that can assist her in making informed choices. Being presented with the consequences of decisions she is asked to make, among other information, is a necessary component that is currently lacking.This work introduces formal argumentation as a framework for helping users make informed decisions about the security of their computer systems and the privacy of their electronically stored information. Argumentation, a mature theoretical discipline, provides a mechanism for reaching substantiated conclusions when faced with incomplete and inconsistent information. It provides the basis for presenting arguments to a user for or against a position, along with well-founded methods for assessing the outcome of interactions among the arguments. An elegant theory of argumentation has been developed based on meta rules characterizing relationships between arguments. Rules for argument construction and evaluation have been devised for specific domains such as medical diagnosis. This project investigates argumentation as the basis for helping users make informed security- and privacy-related decisions about their computer systems. Three specific aims are addressed:1) Implementation of an inference engine that reasons using argumentation,2) Facilitate security management through an argumentation inference engine, a rule base specialized for security management, and sensors providing security alerts all enhanced with an interactive front-end.3) Reason about the consistency and completeness of domain knowledge, as it evolves.To understand the kinds of domain-specific inference rules required, diverse security applications are studied, such as determining if an attack imperils a particular system, finding the root cause of an attack, deciding on appropriate actions to take in the presence of an uncertain diagnosis of an attack, and deciding on privacy settings. Emerging from this project will be a prototype towards the practice of usable security. The team is working with organizations responsible for the security administration of large enterprise networks and will make the prototype tools available to these organizations. The team is working with everyday users from a cross-section of community members. Curricular modules that cover the intersection of argumentation and security are being developed and shared.
计算机用户越来越多地面临影响其个人隐私及其管理系统安全的决策。面临这些挑战的用户范围已经从计算的早期扩大到包括从家庭用户到大型企业网络管理员的每个人。隐私政策常常晦涩难懂,安全设置通常也很复杂。呈现给用户的选项中缺少可以帮助她做出明智选择的决策支持机制。除其他信息外,向她提出要求做出的决定的后果是目前所缺乏的必要组成部分。这项工作引入了正式论证作为框架,帮助用户就其计算机系统的安全性和隐私做出明智的决定他们的电子存储信息。论证是一门成熟的理论学科,它提供了一种在面对不完整和不一致的信息时得出经证实的结论的机制。它提供了向用户提出支持或反对某一立场的论据的基础,以及评估论据之间相互作用的结果的有根据的方法。一种优雅的论证理论是基于描述论证之间关系的元规则而发展起来的。论证构建和评估的规则是针对特定领域(例如医学诊断)设计的。该项目将论证作为帮助用户对其计算机系统做出明智的安全和隐私相关决策的基础进行研究。解决了三个具体目标:1) 实现使用论证进行推理的推理引擎,2) 通过论证推理引擎、专门用于安全管理的规则库以及提供安全警报的传感器来促进安全管理,所有这些都通过交互式前端得到增强.3)关于领域知识不断发展的一致性和完整性的原因。为了了解所需的特定领域推理规则的种类,研究了不同的安全应用程序,例如确定攻击是否危及特定系统,查找根本原因的攻击,决定在攻击诊断不确定的情况下采取适当的行动,并决定隐私设置。该项目将产生可用安全实践的原型。该团队正在与负责大型企业网络安全管理的组织合作,并将向这些组织提供原型工具。该团队正在与来自各个社区成员的日常用户合作。涵盖论证和安全交叉点的课程模块正在开发和共享。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Karl Levitt其他文献
Supporting quality of service in HTTP servers
支持 HTTP 服务器中的服务质量
- DOI:
10.1145/277697.277742 - 发表时间:
1998-06-01 - 期刊:
- 影响因子:3
- 作者:
C. Chung;Michael Gertz;Karl Levitt - 通讯作者:
Karl Levitt
Karl Levitt的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Karl Levitt', 18)}}的其他基金
TWC: Medium: Collaborative: Towards Securing Coupled Financial and Power Systems in the Next Generation Smart Grid
TWC:中:协作:确保下一代智能电网中耦合金融和电力系统的安全
- 批准号:
1229008 - 财政年份:2012
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
GENI: EAGER: GENI Experiments to Explore Adoption of New Security Services
GENI:EAGER:GENI 实验探索新安全服务的采用
- 批准号:
1152664 - 财政年份:2011
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
TC: Small: Collaborative Research: Symbiosis in Byzantine Fault Tolerance and Intrusion Detection
TC:小型:协作研究:拜占庭容错和入侵检测的共生
- 批准号:
1018871 - 财政年份:2010
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
The Verification of Hierarchically Structured Programs
层次结构程序的验证
- 批准号:
7418661 - 财政年份:1975
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
相似国自然基金
ALKBH5介导的SOCS3-m6A去甲基化修饰在颅脑损伤后小胶质细胞炎性激活中的调控作用及机制研究
- 批准号:82301557
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
miRNA前体小肽miPEP在葡萄低温胁迫抗性中的功能研究
- 批准号:
- 批准年份:2023
- 资助金额:50 万元
- 项目类别:
PKM2苏木化修饰调节非小细胞肺癌起始细胞介导的耐药生态位的机制研究
- 批准号:82372852
- 批准年份:2023
- 资助金额:49 万元
- 项目类别:面上项目
基于翻译组学理论探究LncRNA H19编码多肽PELRM促进小胶质细胞活化介导电针巨刺改善膝关节术后疼痛的机制研究
- 批准号:82305399
- 批准年份:2023
- 资助金额:30 万元
- 项目类别:青年科学基金项目
CLDN6高表达肿瘤细胞亚群在非小细胞肺癌ICB治疗抗性形成中的作用及机制研究
- 批准号:82373364
- 批准年份:2023
- 资助金额:49 万元
- 项目类别:面上项目
相似海外基金
TC: Small: Collaborative Research: Implications of Fully Homomorphic Encryption
TC:小型:协作研究:完全同态加密的含义
- 批准号:
1646233 - 财政年份:2016
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
TC: Small: Collaborative Research: Exploiting Network Dynamics for Secret Key Generation
TC:小型:协作研究:利用网络动态生成密钥
- 批准号:
1321223 - 财政年份:2012
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
TC: Small: Collaborative Research: Influencing Mental Models of Security
TC:小:协作研究:影响安全心理模型
- 批准号:
1115926 - 财政年份:2011
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
TC: Small: Collaborative Research: Viewpoints: Discovering Client- and Server-side Input Validation Inconsistencies to Improve Web Application Security
TC:小型:协作研究:观点:发现客户端和服务器端输入验证不一致以提高 Web 应用程序安全性
- 批准号:
1117167 - 财政年份:2011
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant
TC: Small: Collaborative Research: Membership Inference in a Differentially Private World and Beyond
TC:小:协作研究:差异私人世界及其他世界中的成员资格推断
- 批准号:
1117175 - 财政年份:2011
- 资助金额:
$ 24.9万 - 项目类别:
Standard Grant