Enforcing secure data sharing in web Application development frameworks like Django through information flow control

S Susheel, NV Narendra Kumar… - … Systems Security: 11th …, 2015 - Springer
S Susheel, NV Narendra Kumar, RK Shyamasundar
Information Systems Security: 11th International Conference, ICISS 2015 …, 2015Springer
The primary aim of web application development frameworks like Django is to provide a
platform for developers to realize applications from concepts to launch as quickly as
possible. While Django framework provides hooks that enable the developer to avoid the
common security mistakes, there is no systematic way to assure compliance of a security
policy while developing an application from various components. In this paper, we show the
security flaws that arise by considering different versions of an application package and then …
Abstract
The primary aim of web application development frameworks like Django is to provide a platform for developers to realize applications from concepts to launch as quickly as possible. While Django framework provides hooks that enable the developer to avoid the common security mistakes, there is no systematic way to assure compliance of a security policy while developing an application from various components. In this paper, we show the security flaws that arise by considering different versions of an application package and then show how, these mistakes that arise due to incorrect flow of information can be overcome using the Readers-Writers Flow Model that has the ability to manage the release and subsequent propagation of information.
Springer
以上显示的是最相近的搜索结果。 查看全部搜索结果

Google学术搜索按钮

example.edu/paper.pdf
搜索
获取 PDF 文件
引用
References