Abstract:
With the majority of security breaches coming from inside of organizations, and with the number of public computing sites, where users do not know the system administrators, increasing, it is dangerous to blindly trust system administrators to manage computers appropriately. However, most current security systems are vulnerable to malicious software modification by administrators. To solve this problem, we have developed a system called sAEGIS, which embraces a smartcard as personal secure storage for computer component hashes, and uses the hashes in a secure booting process to ensure the integrity of the computer components.
Citations
|
558
|
Efficient software-based fault isolation
– Wahbe, Lucco, et al.
- 1993
|
|
418
|
Cryptography and Data Security
– Denning
- 1982
|
|
294
|
A Secure Environment for Untrusted Helper Applications
– Goldberg, Wagner, et al.
- 1996
|
|
160
|
A Secure and Reliable Bootstrap Architecture
– Arbaugh, Farber, et al.
- 1997
|
|
135
|
The design and implementation of tripwire: A file system integrity checker
– Kim, Spafford
- 1994
|
|
110
|
Design Principles for Tamper-Resistant Smartcard Processors
– Kömmerling, Kuhn
- 1999
|
|
98
|
Limitations of the Kerberos authentication system
– Bellovin, Meritt
- 1990
|
|
54
|
The inevitability of failure: The flawed assumption of security in modern computing environments
– Loscocco, Smalley, et al.
- 1998
|
|
46
|
Introduction to Differential Power Analysis and Related Attacks", http://www.cryptography.com/dpa/technical/index.html
– Kocher, Jae, et al.
- 1998
|
|
13
|
Architectures and Formal Representations for Secure Systems
– Neumann
- 1996
|
|
12
|
Introduction to di erential power analysis and related attacks
– Kocher, e, et al.
- 1998
|
|
8
|
The design and implementation of Tripwire: a system integrity checker
– Kim, Spaord
- 1994
|
|
7
|
Chaining Layered Integrity Checks
– Arbaugh
- 1999
|
|
7
|
Protection in the Grasshopper Operating System
– Dearle, Bona, et al.
- 1994
|
|
6
|
The inevitability of failure: The assumption of security in modern computing environments
– Loscocco, Smalley, et al.
- 1998
|
|
4
|
Intel’s Flash Memory Boot Block Architecture for Safe Firmware Updates
– Hazen
- 1995
|
|
4
|
Iso 7816 library
– Rees
- 1997
|
|
2
|
Basic flaws in internet security and commerce
– Brewer, Gauthier, et al.
- 1995
|
|
2
|
Basic in internet security and commerce
– Brewer, Gauthier, et al.
- 1995
|
|
1
|
Protection in the grasshopper operating system
– Dearie, di, et al.
- 1994
|
|
1
|
Software Foundation. Gnu grub
– Free
- 1999
|
|
1
|
Bypassing integrity checking systems. Phrack Magazine
– halfiife
- 1997
|
|
1
|
Design principles for tarnper-resistant smartcard processors
– Kommerling, Kuhn
- 1999
|
|
1
|
Prose: Parallel real-time operating system for secure environments
– Nag, Gotfried, et al.
- 1996
|
|
1
|
Bypassing integrity checking systems. Phrack Magazine
– hal
- 1997
|