TY - GEN
T1 - Towards provenance and risk-awareness in social computing
AU - Cheng, Yuan
AU - Nguyen, Dang
AU - Bijon, Khalid
AU - Krishnan, Ram
AU - Park, Jaehong
AU - Sandhu, Ravi
PY - 2012
Y1 - 2012
N2 - Although social computing (SC) has been growing phenomenally, it still lacks an appropriate way of protecting the security and privacy of data shared in the system. Current access control mechanisms in the domain of SC mainly rely on pre-defined access control policies to achieve authorization statically, which are intrinsically unsuitable for capturing the dynamic changes in social environment. In this paper, we explore the approach towards a more flexible and adaptive control through the incorporation of risk awareness in SC. In particular, risk values are associated with users and objects; meanwhile, risk thresholds are defined for each of the permissions. Risk values and risk thresholds can be derived from provenance data in a timely manner. Such dynamic computation can be enabled and facilitated with the incorporation of provenance awareness in SC systems.
AB - Although social computing (SC) has been growing phenomenally, it still lacks an appropriate way of protecting the security and privacy of data shared in the system. Current access control mechanisms in the domain of SC mainly rely on pre-defined access control policies to achieve authorization statically, which are intrinsically unsuitable for capturing the dynamic changes in social environment. In this paper, we explore the approach towards a more flexible and adaptive control through the incorporation of risk awareness in SC. In particular, risk values are associated with users and objects; meanwhile, risk thresholds are defined for each of the permissions. Risk values and risk thresholds can be derived from provenance data in a timely manner. Such dynamic computation can be enabled and facilitated with the incorporation of provenance awareness in SC systems.
KW - provenance
KW - risk
KW - social computing
UR - http://www.scopus.com/inward/record.url?scp=84872228785&partnerID=8YFLogxK
U2 - 10.1145/2420936.2420941
DO - 10.1145/2420936.2420941
M3 - Conference contribution
AN - SCOPUS:84872228785
SN - 9781450317771
T3 - Parallel Architectures and Compilation Techniques - Conference Proceedings, PACT
SP - 25
EP - 30
BT - Proc. of the 1st Int. Workshop on Secure and Resilient Architectures and Syst., SRAS 2012 - Held in Conjunction with the 21st Int. Conf. on Parallel Architectures and Compilation Techniques, PACT 2012
T2 - 1st International Workshop on Secure and Resilient Architectures and Systems, SRAS 2012 - Held in Conjunction with the 21st International Conference on Parallel Architectures and Compilation Techniques, PACT 2012
Y2 - 19 September 2012 through 19 September 2012
ER -