security

event

Visible to the public  Processes, Methods, and Tools for Cyber-Security-Aware Automotive Embedded Systems
Apr 18, 2013 8:00 am - 4:30 pm EDT

This session of the SAE 2013 World Congress focuses on processes, methods, and tools for the design, analysis, and synthesis of cyber secure automotive embedded systems. The analysis aspect shall cover static code analysis methods and tools for analyzing the vulnerabilities of embedded software (application and platform) prior to their deployment on the target HW.

file

Visible to the public A Comprehensive Provenance Model

The provenance captured from different layers of abstraction (workflow/process/OS) provides the highest benefit when integrated through a unified provenance framework. To build such a framework, a comprehensive provenance model able to represent the provenance of data objects with various semantics and granularity is the first step. In this poster we present a provenance model able to represent the provenance of any data object captured at any abstraction layer and present an abstract schema of the model.

file

Visible to the public Secure Network Provenance

This poster will present secure network provenance (SNP), a novel capability that enables networked systems to explain to their operators why they are in a certain state - e.g., why a suspicious routing table entry is present on a certain router, or where a given cache entry originated. SNP provides network forensics capabilities by permitting operators to track down faulty or misbehaving nodes, and to assess the damage such nodes may have caused to the rest of the system.

file

Visible to the public An Adoption Theory for Secure Software Development Tools

ABSTRACT

Secure software development tools can help improve the security of software, but many software developers do not use such tools. The poster discusses our findings about why software developers do and do not use security tools, based on 43 interviews with software developers. The results suggest that a variety of factors, encompassing both technical and social aspects, influence developers' decisions.

BIO