Thread
Stories related to "Software Security: Principles, Policies, and Protection" across the full archive.
Many people get confused about why SELinux is so complicated. Partly implementation problem but partly intrinsic complexity to what it's trying to do. I thought people might find it enlightening to see the original, cleaner architecture applied to Fluke microkernel. Culmination of prior, failed atte...
A 2014, draft book by [Peter Guttman](https://www.cs.auckland.ac.nz/~pgut001/) teaching security engineering.
Understanding The Web Security Model, Part III: Basic Principles and the Origin Concept
(educatedguesswork.org)
3rd edition of Ross Anderson’s Security Engineering book now freely available for download
(lightbluetouchpaper.org)
An Empirical Study into the Security Exposure to Hosts of Hostile Virtualized Environments
(taviso.decsystem.org)