Death, Taxes, and Imperfect Software: Surviving the Inevitable
نویسندگان
چکیده
A security system is only as strong as its weakest link. This observation lead to security architectures that use a small trusted computing base (TCB) to minimize the number of “links” in the system. A small TCB both reduces the chance of a bug occurring by reducing the volume of software that may contain a bug, and also makes formal verification of the correctness of the TCB feasible. Unfortunately, for a variety of reasons, the commercial marketplace of popular operating systems has chosen to ignore this line of reasoning. The “trusted computing base” (system components embodied with significant amounts of trust) is not small, is not formally verified, and consequently is neither correct nor secure. We conclude that it is inevitable that commodity systems software will have flawed security. Techniques have developed to allow systems to cope with potential security flaws, which we call security bug tolerance. Security bug tolerance enhances the survivability of a flawed system by post hoc dealing with the system’s security flaws. This paper presents a categorization scheme for security bug tolerance techniques, and populates it with techniques of our own and from the literature. The categorization allows the reader to analyze various techniques to discover their similarities and differences, enabling the reader to compare relatively diverse tools on their merits.
منابع مشابه
Death , Taxes , and Imperfect Software : Surviving the Inevitable 1
A security system is only as strong as its weakest link. This observation lead to security architectures that use a small trusted computing base (TCB) to minimize the number of “links” in the system. A small TCB both reduces the chance of a bug occurring by reducing the volume of software that may contain a bug, and also makes formal verification of the correctness of the TCB feasible. Unfortun...
متن کاملEndogenous markups and the effects of income taxation: Theory and evidence from OECD countries
Existing studies on the effects of fiscal policy under imperfect competition typically treat each firm’s price-cost markup as fixed. This paper examines the implications of endogenising the markup in a simple model of income taxation under monopolistic competition. It is demonstrated that an increase in income tax reduces the number of firms, lessens competition among surviving firms and raises...
متن کاملMARKOVIAN SOFTWARE RELIABILITY MODEL FOR TWO TYPES OF FAILURES WITH IMPERFECT DEBUGGING RATE AND GENERATION OF ERRORS
N
متن کاملEvaluation of Financing Effects Through Direct Taxes on Economic Growth in Iran
In most countries, a major source of government revenue is funded through taxes. Tax share of total public revenues is different among countries and the rate depends on the level of development and economic structure. For this reason, the necessity to understanding of causes, aggravating factors, tax evasion, providing practical solutions and scientific recommendations will be inevitable. Accor...
متن کاملEnvironmental Taxation and Structural Change in an Open Economy A CGE Analysis with Imperfect Competition and Free Entry
The economic effects of environmental taxes depend on the market structure. Under imperfect competition with free entry and exit, environmental taxes have an impact on economies of scale by changing the number and size of firms. Whether economies of scale rise or fall in a particular industry depends on induced changes in the price elasticity of demand. Because export demand is more price elast...
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 1998