A Data Protection Model Based on User's Intention

CAO Sihua,HE Hongjun,LUO Li,FENG Tao
DOI: https://doi.org/10.3321/j.issn:1671-8836.2006.05.014
2006-01-01
Abstract:After analyzing the access rights of the processes,this paper presents a data-protection model which will prevent the attack of the malicious processes on the base of minimal privilege principle.This model has reinforced the DAC access control mechanism.When process accesses user's data,the process has to gain the user's intention.Based on the task of the process,the user will endow the process minimal rights to access the related data,which will prevent the process from accessing data that are not concerned with the task.Thus it will prevent process destroy user's data because of overusing access rights.The test result shows that this model can effectively stop the unauthorized access and protect data from destructing or stealing.
What problem does this paper attempt to address?