|
|
|
题名
|
作者
|
年代
|
出处
|
被引量
|
| 1 | Survey of information security显示文摘The 21st century is the age of information when information becomes an important strategic resource. The information obtaining, processing and security guarantee capability are playing critical roles in comprehensive national power, and information security is related to the national security and social stability. Therefore, we should take measures to ensure the information security of our country. In recent years, momentous accomplishments have been obtained with the rapid development of information security technology. There are extensive theories about information security and technology. However, due to the limitation of length, this article mainly focuses on the research and development of cryptology, trusted computing, security of network, and information hiding, etc. | SHEN ChangXiang ZHANG HuangGuo FENG DengGuo CAO ZhenFu HUANG JiWu | 2007 | Science in China(Series F)2007,50,3: | 39 |
| 2 | Research on trusted computing and its development显示文摘Trusted computing is a novel technology of information system security. It has become a new tide in worldwide information security area and achieved inspiring accomplishment. In China, the initiative research of trusted computing is not late, and the achievements are plentiful and substantial. Our country is in the front rank of the world in trusted computing. This paper comprehensively illustrates the recent development in theory and technology of trusted computing, introduces some improvements in trusted computing in our country, and proposes our opinions and viewpoints towards the existing problems in trusted computing and its future development. | SHEN ChangXiang ZHANG HuanGuo WANG HuaiMin WANG Ji ZHAO Bo YAN Fei YU FaJiang ZHANG LiQiang XU MingDi | 2010 | Science China(Information Sciences)2010,53,3: | 37 |
| 3 | Energy-Theft Detection Issues for Advanced Metering Infrastructure in Smart Grid显示文摘With the proliferation of smart grid research,the Advanced Metering Infrastructure(AMI) has become the first ubiquitous and fixed computing platform. However,due to the unique characteristics of AMI,such as complex network structure,resource-constrained smart meter,and privacy-sensitive data,it is an especially challenging issue to make AMI secure. Energy theft is one of the most important concerns related to the smart grid implementation. It is estimated that utility companies lose more than $25 billion every year due to energy theft around the world. To address this challenge,in this paper,we discuss the background of AMI and identify major security requirements that AMI should meet. Specifically,an attack tree based threat model is first presented to illustrate the energy-theft behaviors in AMI. Then,we summarize the current AMI energy-theft detection schemes into three categories,i.e.,classification-based,state estimation-based,and game theory-based ones,and make extensive comparisons and discussions on them. In order to provide a deep understanding of security vulnerabilities and solutions in AMI and shed light on future research directions,we also explore some open challenges and potential solutions for energy-theft detection. | Rong Jiang Rongxing Lu Ye Wang Jun Luo Changxiang Shen Xuemin(Sherman) Shen | 2014 | Tsinghua Science and Technology2014,19,2: | 22 |
| 4 | Behavior Measurement Model Based on Prediction and Control of Trusted Network显示文摘In order to construct the trusted network and realize the trust of network behavior,a new multi-dimensional behavior measurement model based on prediction and control is presented.By using behavior predictive equation,individual similarity function,group similarity function,direct trust assessment function,and generalized predictive control,this model can guarantee the trust of an end user and users in its network.Compared with traditional measurement model,the model considers different characteristics of various networks.The trusted measurement policies established according to different network environments have better adaptability.By constructing trusted group,the threats to trusted group will be reduced greatly.Utilizing trusted group to restrict individuals in network can ensure the fault tolerance of trustworthiness of trusted individuals and group.The simulation shows that this scheme can support behavior measurement more efficiently than traditional ones and the model resists viruses and Trojans more efficiently than older ones. | Gong Bei Zhang Jianbiao Shen Changxiang Zhang Xing | 2012 | China Communications2012,9,5: | 5 |
| 5 | A Trusted Measurement Scheme Suitable for the Clients in the Trusted Network显示文摘The trusted network connection is a hot spot in trusted computing field and the trust measurement and access control technology are used to deal with network security threats in trusted network.But the trusted network connection lacks fine-grained states and real-time measurement support for the client and the authentication mechanism is difficult to apply in the trusted network connection,it is easy to cause the loss of identity privacy.In order to solve the abovedescribed problems,this paper presents a trust measurement scheme suitable for clients in the trusted network,the scheme integrates the following attributes such as authentication mechanism,state measurement,and real-time state measurement and so on,and based on the authentication mechanism and the initial state measurement,the scheme uses the realtime state measurement as the core method to complete the trust measurement for the client.This scheme presented in this paper supports both static and dynamic measurements.Overall,the characteristics of this scheme such as fine granularity,dynamic,real-time state measurement make it possible to make more fine-grained security policy and therefore it overcomes inadequacies existing in the current trusted network connection. | GONG Bei ZHANG Jianbiao YE Xiaolie SHEN Changxiang | 2014 | China Communications2014,11,4: | 3 |
| 6 | Security Architecture of Trusted Virtual Machine Monitor for Trusted Computing显示文摘With analysis of limitations Trusted Computing Group (TCG) has encountered, we argued that virtual machine monitor (VMM) is the appropriate architecture for implementing TCG specification. Putting together the VMM architecture, TCG hard- ware and application-oriented “thin” virtual machine (VM), Trusted VMM-based security architecture is present in this paper with the character of reduced and distributed trusted computing base (TCB). It provides isolation and integrity guarantees based on which general security requirements can be satisfied. | HUANG Qiang SHEN Changxiang FANG Yanxiang | 2007 | Wuhan University Journal of Natural Sciences2007,12,1: | 2 |
| 7 | Formal Compatibility Model for Trusted Computing Applications显示文摘The Chinese specification for trusted computing, which has similar functions with those defined by the Trusted Computing Group (TCG), has adopted a different cryptography scheme. Applications designed for the TCG specifications cannot directly function on platforms complying with Chinese specifications because the two cryptography schemes are not compatible with each other. In order to transplant those applications with little to no modification, the paper presents a formal compatibility model based on Zaremski and Wing’s type system. Our model is concerned not only on the syntactic compatibility for data type, but also on the semantic compatibility for cryptographic attributes according to the feature of trusted computing. A compatibility algorithm is proposed based on the model to generate adapters for trusted computing applications. | ZHU Lu YU Sheng ZHANG Xing SHEN Changxiang | 2009 | Wuhan University Journal of Natural Sciences2009,14,5: | 2 |
| 8 | Survey of information security显示文摘 | Shen ChangXiang Zhang HuangGuo Feng DengGuo | 2007 | Science in China Series: E ( Information Security)2007,37,2: | 1 |
| 9 | A Nonin?terference-Based Trusted Chain Model 显示文摘 | ZHAO Jia SHEN Changxiang UU Jiqiang | 2008 | Journal of Com?puter Research and Developrrent2008,45,6: | 1 |
| 10 | Non-Inter?ference Trusted Model Based on Processes 显示文摘 | ZHANG Xing CHEN Youlei SHEN Changxiang | 2009 | Journal on Cormunications2009,30,3: | 1 |
| 11 | Survey of information security 显示文摘 | Shen Changxiang Zhang Huanguo Feng Dengguo | 2007 | Science in China (Information Sciences)2007,37,2: | 1 |
| 12 | Research and Development of the Trusted Confuting显示文摘 | SHEN Changxiang ZHANG Huanguo WANG Huai-nfin | 2010 | Scientia Sinica(Infortmtions)2010,28,5: | 1 |
| 13 | Trusted computing research and development 显示文摘 | Shen Changxiang Zhang Huanguo Wang Huaimin | 2010 | Science China: Information Sciences2010,40,2: | 1 |
| 14 | Multivariate Public-key Encryption Scheme based on Error CorrectingCodes显示文摘 | WANG Houzhen SHEN Changxiang XU Zhengquan | | 0,,04: | 1 |
| 15 | Active-defending security assurance framework显示文摘 | Shen Changxiang | 2003 | Chinese Information Review2003,10,: | 1 |
| 16 | Remote Attestation-Based Access Control on Trusted Computing Platform显示文摘Existing remote attestation schemes based on trusted computing have some merits on enhancing security assurance level, but they usually do not integrate tightly with the classical system security mechanism. In this paper, we present a component named remote attestation-based access controller (RABAC), which is based on a combination of techniques, such as random number, Bell-La Padula (BLP) model, user identity combined with his security properties and so on. The component can validate the current hardware and software integrity of the remote platform, and implement access control with different security policy. We prove that the RABAC can not only improve the security of transferred information in remote attestation process but also integrate remote attestation and classical system security mechanism effectively. | LIU Xian'gang ZHANG Xing FU Yingfang SHEN Changxiang | 2010 | Wuhan University Journal of Natural Sciences2010,15,3: | 0 |
| 17 | A Separated Domain-Based Kernel Model for Trusted Computing显示文摘This paper fist gives an investigation on trusted computing on mainstream operation system (OS). Based on the observations, it is pointed out that Trusted Computing cannot be achieved due to the lack of separation mechanism of the components in mainstream OS. In order to provide a kind of separation mechanism, this paper proposes a separated domain-based kernel model (SDBKM), and this model is verified by non-interference theory. By monitoring and simplifying the trust dependence between domains, this model can solve problems in trust measurement such as deny of service (DoS) attack, Host security, and reduce the overhead of measurement. | FANG Yanxiang SHEN Changxiang XU Jingdong WU Gongyi | 2006 | Wuhan University Journal of Natural Sciences2006,11,6: | 0 |