George Coker

dblp:56/5351 · DBLP profile ↗
← Back
3ranked-venue papers
1as first author
0since 2021 · last 2015
—ORCID · none

Domains — the database's venue-derived domains; a paper can count in several

Security and privacy · 2 · 1 first-authorSoftware engineering, systems software and programming languages · 1

Expertise — from the expertise taxonomy: the topics of the expert's papers under the CCF categories. A weight counts papers with recency: 1 for a paper about the topic, 0.3 when the topic is its context, halved every five years.

Network and information security
1 paper
Systems and software security · 100%
Computer architecture, parallel and distributed computing, and storage systems
1 paper
Cloud and datacenter computing · 100%

Topics — the 4 heaviest of 4, each with the papers that count most for it

TopicWeightPapersLastEvidence papers
Systems and software security
isolation
0.112011
Breaking up is hard to do: security and functionality in a commodity hypervisor · SOSP 2011
Systems and software security › isolation
multi-tenant isolation
0.112011
Breaking up is hard to do: security and functionality in a commodity hypervisor · SOSP 2011
Cloud and datacenter computing › virtualization › virtualization security
hypervisor security
0.112011
Breaking up is hard to do: security and functionality in a commodity hypervisor · SOSP 2011
Cloud and datacenter computing
virtualization
0.112011
Breaking up is hard to do: security and functionality in a commodity hypervisor · SOSP 2011
YearPublicationVenuePosition
2015 Model Checking Distributed Mandatory Access Control Policies
abstract
This work examines the use of model checking techniques to verify system-level security properties of a collection of interacting virtual machines. Specifically, we examine how local access control policies implemented in individual virtual machines and a hypervisor can be shown to satisfy global access control constraints. The SAL model checker is used to model and verify a collection of stateful domains with protected resources and local MAC policies attempting to access needed resources from other domains. The model is described along with verification conditions. The need to control state-space explosion is motivated and techniques for writing theorems and limiting domains explored. Finally, analysis results are examined along with analysis complexity.
Perry Alexander, Lee Pike, Peter A. Loscocco, George Coker
ACM Trans. Inf. Syst. Secur.4
2011 Breaking up is hard to do: security and functionality in a commodity hypervisor
abstract
Cloud computing uses virtualization to lease small slices of large-scale datacenter facilities to individual paying customers. These multi-tenant environments, on which numerous large and popular web-based applications run today, are founded on the belief that the virtualization platform is sufficiently secure to prevent breaches of isolation between different users who are co-located on the same host. Hypervisors are believed to be trustworthy in this role because of their small size and narrow interfaces.
Patrick Colp, Mihir Nanavati, William Aiello, George Coker, Tim Deegan, Peter A. Loscocco, Andy Warfield
SOSP5
2008 Attestation: Evidence and Trust
George Coker, Joshua D. Guttman, Peter A. Loscocco, Justin Sheehy, Brian T. Sniffen
ICICS1