Middleware Security

Principal Investigator: Eugene Spafford

Research Assistant: M. Tripunitara

Sponsor: COAST Laboratory sponsors

The middleware security project addresses the following question: given a modularized software system, how does one introduce new, security-specific modules so the whole system is secure? This approach is being studied particularly in the context of network protocol stacks and graphs. Also being investigated are effective security-testing techniques for such a system. The project researchers have successfully adapted the flaw-hypothesis testing methodology to test such a system. This research has strong implications to legacy systems that have not been designed with security in mind.

1998
Annual Research Report

Department of
Computer Sciences