This talk discusses how to secure both today's web sites and tomorrow's web computing platforms with a new OS technique called Decentralized Information Flow Control (DIFC). A DIFC system tracks the flow of secret data as it is copied from file to file and communicated from process to process. DIFC provides better security than standard OSes because it allows developers to concentrate security-critical code in small, audit-friendly declassifiers, which remain small and contained even as the overall system balloons with new features.
To see more videos from the University of Washington visit uwtv.org.
Link to this comment:
All Comments (0)