Title :
Minimizing transitive trust threats in software management systems
Author :
Boender, Jaap ; Primiero, Giuseppe ; Raimondi, Franco
Author_Institution :
Dept. of Comput. Sci., Middlesex Univ., London, UK
Abstract :
We consider security threats in software installation processes, posed by transitively trusted dependencies between packages from distinct repositories. To analyse them, we present SecureNDC, a Coq implemented calculus using an explicit trust function to bridge repository access and software package installation rights. Thereby, we resolve a version of the minimum install problem under trust conditions on repositories.
Keywords :
software management; software packages; trusted computing; Coq implemented calculus; SecureNDC; security threats; software installation process; software management systems; software package installation rights; transitive trust threats; trusted dependencies; Calculus; Context; Lead; Libraries; Security; Software packages;
Conference_Titel :
Privacy, Security and Trust (PST), 2015 13th Annual Conference on
Conference_Location :
Izmir
DOI :
10.1109/PST.2015.7232973