• DocumentCode
    1997089
  • Title

    Minimizing transitive trust threats in software management systems

  • Author

    Boender, Jaap ; Primiero, Giuseppe ; Raimondi, Franco

  • Author_Institution
    Dept. of Comput. Sci., Middlesex Univ., London, UK
  • fYear
    2015
  • fDate
    21-23 July 2015
  • Firstpage
    191
  • Lastpage
    198
  • Abstract
    We consider security threats in software installation processes, posed by transitively trusted dependencies between packages from distinct repositories. To analyse them, we present SecureNDC, a Coq implemented calculus using an explicit trust function to bridge repository access and software package installation rights. Thereby, we resolve a version of the minimum install problem under trust conditions on repositories.
  • Keywords
    software management; software packages; trusted computing; Coq implemented calculus; SecureNDC; security threats; software installation process; software management systems; software package installation rights; transitive trust threats; trusted dependencies; Calculus; Context; Lead; Libraries; Security; Software packages;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Privacy, Security and Trust (PST), 2015 13th Annual Conference on
  • Conference_Location
    Izmir
  • Type

    conf

  • DOI
    10.1109/PST.2015.7232973
  • Filename
    7232973