Computer security :

Bishop, Matt

Computer security : art and science / Matt Bishop ; with contributions from Elisabeth Sullivan and Michelle Ruppel. - Second edition. - xlix, 1383 pages : illustrations ; 24 cm.

Includes bibliographical references (pages 1251-1339) and index.

Part I: Introduction: An Overview of Computer Security -- Part II: Foundations: Access Control -- Foundational Results -- Part III: Policy: Security Policies -- Confidentiality Policies -- Integrity Policies -- Availability Policies -- Hybrid Policies -- Noninterference and Policy Composition -- Part IV: Implementation I: Cryptography: Basic Cryptography -- Key Management -- Cipher Techniques - Authentication -- Part V: Implementation II: Systems -- Design Principles -- Representing Identity -- Access Control Mechanisms -- Information Flow -- Confinement Problem -- Introduction to Assurance -- Building Systems with Assurance -- Formal Methods -- Evaluating Systems -- Part VII: Special Topics: Malware -- Vulnerability Analysis - Auditing -- Intrusion Detection -- Attacks and Responses -- Part VIII: Practicum: Network Security -- System Security -- User Security -- Program Security -- Part IX: Appendices: Appendix A: Lattices -- Appendix B: The Extended Euclidean Algorithm -- Appendix C: Entropy and Uncertainty -- Appendix D: Virtual Machines -- Appendix E: Symbolic Logic -- Appendix F: The Encryption Standards -- Appendix G: Example Academic Security Policy -- Appendix H: Programming Rules

The Comprehensive Guide to Computer Security, Extensively Revised with Newer Technologies, Methods, Ideas, and Examples In this updated guide, University of California at Davis Computer Security Laboratory co-director Matt Bishop offers clear, rigorous, and thorough coverage of modern computer security. Reflecting dramatic growth in the quantity, complexity, and consequences of security incidents, Computer Security, Second Edition, links core principles with technologies, methodologies, and ideas that have emerged since the first edition's publication. Writing for advanced undergraduates, graduate students, and IT professionals, Bishop covers foundational issues, policies, cryptography, systems design, assurance, and much more. He thoroughly addresses malware, vulnerability analysis, auditing, intrusion detection, and best-practice responses to attacks. In addition to new examples throughout, Bishop presents entirely new chapters on availability policy models and attack analysis. Understand computer security goals, problems, and challenges, and the deep links between theory and practice Learn how computer scientists seek to prove whether systems are secure Define security policies for confidentiality, integrity, availability, and more Analyze policies to reflect core questions of trust, and use them to constrain operations and change Implement cryptography as one component of a wider computer and network security strategy Use system-oriented techniques to establish effective security mechanisms, defining who can act and what they can do Set appropriate security goals for a system or product, and ascertain how well it meets them Recognize program flaws and malicious logic, and detect attackers seeking to exploit them This is both a comprehensive text, explaining the most fundamental and pervasive aspects of the field, and a detailed reference. It will help you align security concepts with realistic policies, successfully implement your policies, and thoughtfully manage the trade-offs that inevitably arise. Register your book for convenient access to downloads, updates, and/or corrections as they become available. See inside book for details.

0321712331 9780321712332


Computer security.

QA76.9.A25 / B56 2019

005.8 BI.C 2019