A4 Refereed article in a conference publication
A Survey on Application Sandboxing Techniques
Authors: Lauren Samuel, Rauti Sampsa, Leppänen Ville
Editors: Rachev Boris, Smrikarov Angel
Conference name: International Conference on Computer Systems and Technologies
Publishing place: New York, NY
Publication year: 2017
Book title : Proceedings of the 18th International Conference on Computer Systems and Technologies
Series title: ACM International Conference Proceedings Series
Volume: 1369
First page : 141
Last page: 148
Number of pages: 8
ISBN: 978-1-4503-5234-5
DOI: https://doi.org/10.1145/3134302.3134312
Web address : https://dl.acm.org/citation.cfm?doid=3134302.3134312
Self-archived copy’s web address: https://research.utu.fi/converis/portal/detail/Publication/28532802
The principle of least privilege states that components in a system should only be allowed to perform
actions that are required for them to function. The wish to limit what programs can access has given rise to
a set of application-level sandboxing solutions. In this paper, we survey recent research on application-level
sandboxing. We discuss the properties of the major implementations and highlight the key differences between
them. In addition, we highlight how recent features in mainline Linux kernel have altered the sandboxing
landscape.
Downloadable publication This is an electronic reprint of the original article. |