DocumentCode
3135949
Title
Protecting data from malicious software
Author
Schmid, Matthew ; Hill, Frank ; Ghosh, Anup K.
fYear
2002
fDate
2002
Firstpage
199
Lastpage
208
Abstract
Corruption or disclosure of sensitive user documents can be among the most lasting and costly effects of malicious software attacks. Many malicious programs specifically target files that are likely to contain important user data. Researchers have approached this problem by developing techniques for restricting access to resources on an application-by-application basis. These so-called "sandbox environments," though effective, are cumbersome and difficult to use. In this paper, we present a prototype Windows NT/2000 tool that addresses malicious software threats to user data by extending the existing set of file-access permissions. Management and configuration options make the tool unobtrusive and easy to use. We have conducted preliminary experiments to assess the usability of the tool and to evaluate the effects of improvements we have made. Our work has produced an intuitive data-centric method of protecting valuable documents that provides an additional layer of defense beyond existing antivirus solutions.
Keywords
computer viruses; security of data; Windows NT/2000 tool; file-access permissions; intuitive data-centric method; malicious programs; malicious software attacks; malicious software threats; sandbox environments; sensitive user documents; Access control; Application software; Data security; Permission; Protection; Software performance; Software prototyping; Software tools; Usability; Viruses (medical);
fLanguage
English
Publisher
ieee
Conference_Titel
Computer Security Applications Conference, 2002. Proceedings. 18th Annual
ISSN
1063-9527
Print_ISBN
0-7695-1828-1
Type
conf
DOI
10.1109/CSAC.2002.1176291
Filename
1176291
Link To Document