files/journal/2022-09-02_11-59-20-000000_418.png

Asian Journal of Information Technology

ISSN: Online 1993-5994
ISSN: Print 1682-3915
108
Views
0
Downloads

Controlling Information Flows Among Object-Oriented Systems to Prevent Information Leakage

Shih-Chien Chou
Page: 96-106 | Received 21 Sep 2022, Published online: 21 Sep 2022

Full Text Reference XML File PDF File

Abstract

Many information flow control models were available to prevent information leakage within a system. Since systems may cooperate, it is necessary to prevent information leakage among cooperating systems when they communicate. Our survey shows that no existing model offers the prevention. In the past years, we developed an information flow control model based on RBAC (role-based access control), which is named OORBAC (object-oriented role-based access control). Like other existing models, OORBAC cannot prevent information leakage among systems. To offer the prevention, we extended OORBAC. The extension is based on the consideration: when information is passed from a system to another one, the security level of the information being passed should be the same as or lower than the security level of the variable receiving the information. This study shows the extended model and its evaluation.


How to cite this article:

Shih-Chien Chou . Controlling Information Flows Among Object-Oriented Systems to Prevent Information Leakage.
DOI: https://doi.org/10.36478/ajit.2006.96.106
URL: https://www.makhillpublications.co/view-article/1682-3915/ajit.2006.96.106