Content area

Abstract

Information flow tracking was proposed more than 40 years ago to address the limitations of access control mechanisms to guarantee the confidentiality and integrity of information flowing within a system, but has not yet been widely applied in practice for security solutions. Here, we survey and systematize literature on dynamic information flow tracking (DIFT) to discover challenges and opportunities to make it practical and effective for security solutions. We focus on common knowledge in the literature and lingering research gaps from two dimensions- (i) the layer of abstraction where DIFT is implemented (software, software/hardware, or hardware) and (ii) the security goal (confidentiality and/or integrity). We observe that two major limitations hinder the practical application of DIFT for on-the-fly security applications: (i) high implementation overhead and (ii) incomplete information flow tracking (low accuracy). We posit, after review of the literature, that addressing these major impedances via hardware parallelism can potentially unleash DIFT's great potential for systems security, as it can allow security policies to be implemented in a built-in and standardized fashion. Furthermore, we provide recommendations for the next generation of practical and efficient DIFT systems with an eye towards hardware-supported implementations.

Details

10000008
Title
Challenges and Opportunities for Practical and Effective Dynamic Information Flow Tracking
Author
Brant, Christopher 1 ; Shrestha, Prakash 1 ; Mixon-Baca, Benjamin 2 ; Chen, Kejun 1 ; Varlioglu, Said 3 ; Elsayed, Nelly; Jin, Yier; Crandall, Jedidiah; Oliveira, Daniela

 University of Florida, Gainesville, FL 
 Arizona State University, Tempe, AZ 
 University of Cincinnati, Cincinnati, OH 
Publication title
Volume
55
Issue
1
First page
1
Publication year
2023
Publication date
Jan 2023
Section
SURVEY
Publisher
Association for Computing Machinery
Place of publication
Baltimore
Country of publication
United States
Publication subject
ISSN
03600300
e-ISSN
15577341
Source type
Scholarly Journal
Language of publication
English
Document type
Journal Article
ProQuest document ID
2760577181
Document URL
https://www.proquest.com/scholarly-journals/challenges-opportunities-practical-effective/docview/2760577181/se-2?accountid=208611
Copyright
Copyright Association for Computing Machinery Jan 2023
Last updated
2024-12-18
Database
ProQuest One Academic