Visible to the public On Risk in Access Control Enforcement

TitleOn Risk in Access Control Enforcement
Publication TypeConference Paper
Year of Publication2017
AuthorsPetracca, Giuseppe, Capobianco, Frank, Skalka, Christian, Jaeger, Trent
Conference NameProceedings of the 22Nd ACM on Symposium on Access Control Models and Technologies
Date Published2017-06-07
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-4702-0
Keywordsaccess control enforcement, Human Behavior, human factors, Metrics, pubcrawl, Resiliency, risk, Scalability, Security Risk Estimation
Abstract

While we have long had principles describing how access control enforcement should be implemented, such as the reference monitor concept, imprecision in access control mechanisms and access control policies leads to risks that may enable exploitation. In practice, least privilege access control policies often allow information flows that may enable exploits. In addition, the implementation of access control mechanisms often tries to balance security with ease of use implicitly (e.g., with respect to determining where to place authorization hooks) and approaches to tighten access control, such as accounting for program context, are ad hoc. In this paper, we define four types of risks in access control enforcement and explore possible approaches and challenges in tracking those types of risks. In principle, we advocate runtime tracking to produce risk estimates for each of these types of risk. To better understand the potential of risk estimation for authorization, we propose risk estimate functions for each of the four types of risk, finding that benign program deployments accumulate risks in each of the four areas for ten Android programs examined. As a result, we find that tracking of relative risk may be useful for guiding changes to security choices, such as authorized unsafe operations or placement of authorization checks, when risk differs from that expected.

URLhttps://dl.acm.org/citation.cfm?doid=3078861.3078872
DOI10.1145/3078861.3078872
Citation Keypetracca_risk_2017