Data Integrity Security Spots Detected by Object Reference

Rajasree Punneth Radhakrishnan, MICHAEL E. SHIN, Pushkar Ogale · 2021

The malicious code injected by an insider into a program can compromise sensitive data that is one of the most valuable assets in an organization. This paper describes the Integrity Breach Conditions (IBCs) used to determine security spots that change sensitive data values in a program. A malicious insider can create a security spot to compromise sensitive data using the reference to a class object. We have specified the IBCs by considering object references in the coupling relationships between objects. The IBCs have been implemented in a prototype tool to validate our approach with a case study.

Read the paper · More papers on PaperTik