DocumentCode
1997089
Title
Minimizing transitive trust threats in software management systems
Author
Boender, Jaap ; Primiero, Giuseppe ; Raimondi, Franco
Author_Institution
Dept. of Comput. Sci., Middlesex Univ., London, UK
fYear
2015
fDate
21-23 July 2015
Firstpage
191
Lastpage
198
Abstract
We consider security threats in software installation processes, posed by transitively trusted dependencies between packages from distinct repositories. To analyse them, we present SecureNDC, a Coq implemented calculus using an explicit trust function to bridge repository access and software package installation rights. Thereby, we resolve a version of the minimum install problem under trust conditions on repositories.
Keywords
software management; software packages; trusted computing; Coq implemented calculus; SecureNDC; security threats; software installation process; software management systems; software package installation rights; transitive trust threats; trusted dependencies; Calculus; Context; Lead; Libraries; Security; Software packages;
fLanguage
English
Publisher
ieee
Conference_Titel
Privacy, Security and Trust (PST), 2015 13th Annual Conference on
Conference_Location
Izmir
Type
conf
DOI
10.1109/PST.2015.7232973
Filename
7232973
Link To Document