{"id":"https://openalex.org/W4313549859","doi":"https://doi.org/10.1145/3551349.3559530","title":"Quacky: Quantitative Access Control Permissiveness Analyzer\u2731","display_name":"Quacky: Quantitative Access Control Permissiveness Analyzer\u2731","publication_year":2022,"publication_date":"2022-10-10","ids":{"openalex":"https://openalex.org/W4313549859","doi":"https://doi.org/10.1145/3551349.3559530"},"language":"en","primary_location":{"id":"doi:10.1145/3551349.3559530","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3551349.3559530","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3551349.3559530","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 37th IEEE/ACM International Conference on Automated Software Engineering","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3551349.3559530","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5088950037","display_name":"William Eiers","orcid":"https://orcid.org/0009-0007-0235-2332"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"William Eiers","raw_affiliation_strings":["University of California Santa Barbara, United States of America"],"affiliations":[{"raw_affiliation_string":"University of California Santa Barbara, United States of America","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5027254929","display_name":"Ganesh Sankaran","orcid":"https://orcid.org/0009-0002-4777-5615"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ganesh Sankaran","raw_affiliation_strings":["University of California Santa Barbara, USA"],"affiliations":[{"raw_affiliation_string":"University of California Santa Barbara, USA","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5101761418","display_name":"Albert Li","orcid":"https://orcid.org/0009-0006-6638-917X"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Albert Li","raw_affiliation_strings":["University of California Santa Barbara, USA"],"affiliations":[{"raw_affiliation_string":"University of California Santa Barbara, USA","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5070831204","display_name":"Emily O'Mahony","orcid":"https://orcid.org/0000-0003-0894-9774"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Emily O'Mahony","raw_affiliation_strings":["University of California Santa Barbara, USA"],"affiliations":[{"raw_affiliation_string":"University of California Santa Barbara, USA","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5003352860","display_name":"Benjamin Prince","orcid":null},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Benjamin Prince","raw_affiliation_strings":["University of California Santa Barbara, USA"],"affiliations":[{"raw_affiliation_string":"University of California Santa Barbara, USA","institution_ids":["https://openalex.org/I154570441"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5039991493","display_name":"Tevfik Bultan","orcid":"https://orcid.org/0000-0003-2993-1215"},"institutions":[{"id":"https://openalex.org/I154570441","display_name":"University of California, Santa Barbara","ror":"https://ror.org/02t274463","country_code":"US","type":"education","lineage":["https://openalex.org/I154570441"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tevfik Bultan","raw_affiliation_strings":["University of California, Santa Barbara, United States of America"],"affiliations":[{"raw_affiliation_string":"University of California, Santa Barbara, United States of America","institution_ids":["https://openalex.org/I154570441"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5088950037"],"corresponding_institution_ids":["https://openalex.org/I154570441"],"apc_list":null,"apc_paid":null,"fwci":1.183,"has_fulltext":true,"cited_by_count":3,"citation_normalized_percentile":{"value":0.8520675,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":96},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"5"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998000264167786,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11614","display_name":"Cloud Data Security Solutions","score":0.9950000047683716,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9943000078201294,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/permissiveness","display_name":"Permissiveness","score":0.774202287197113},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.6984885334968567},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.6896441578865051},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.5505124926567078},{"id":"https://openalex.org/keywords/solver","display_name":"Solver","score":0.519388735294342},{"id":"https://openalex.org/keywords/outsourcing","display_name":"Outsourcing","score":0.5049150586128235},{"id":"https://openalex.org/keywords/loom","display_name":"LOOM","score":0.486510694026947},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.4611985385417938},{"id":"https://openalex.org/keywords/permissive","display_name":"Permissive","score":0.43117737770080566},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.3839994966983795},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.357362300157547},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.1756761372089386},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.13585764169692993},{"id":"https://openalex.org/keywords/law","display_name":"Law","score":0.12202230095863342},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.10784894227981567},{"id":"https://openalex.org/keywords/political-science","display_name":"Political science","score":0.09875151515007019}],"concepts":[{"id":"https://openalex.org/C2777890099","wikidata":"https://www.wikidata.org/wiki/Q7169345","display_name":"Permissiveness","level":4,"score":0.774202287197113},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.6984885334968567},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6896441578865051},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.5505124926567078},{"id":"https://openalex.org/C2778770139","wikidata":"https://www.wikidata.org/wiki/Q1966904","display_name":"Solver","level":2,"score":0.519388735294342},{"id":"https://openalex.org/C46934059","wikidata":"https://www.wikidata.org/wiki/Q61515","display_name":"Outsourcing","level":2,"score":0.5049150586128235},{"id":"https://openalex.org/C2778584943","wikidata":"https://www.wikidata.org/wiki/Q6459541","display_name":"LOOM","level":2,"score":0.486510694026947},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.4611985385417938},{"id":"https://openalex.org/C15224491","wikidata":"https://www.wikidata.org/wiki/Q7169338","display_name":"Permissive","level":2,"score":0.43117737770080566},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.3839994966983795},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.357362300157547},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.1756761372089386},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.13585764169692993},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.12202230095863342},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.10784894227981567},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.09875151515007019},{"id":"https://openalex.org/C140704245","wikidata":"https://www.wikidata.org/wiki/Q3933202","display_name":"Viral replication","level":3,"score":0.0},{"id":"https://openalex.org/C81885089","wikidata":"https://www.wikidata.org/wiki/Q189082","display_name":"Cell culture","level":2,"score":0.0},{"id":"https://openalex.org/C86803240","wikidata":"https://www.wikidata.org/wiki/Q420","display_name":"Biology","level":0,"score":0.0},{"id":"https://openalex.org/C54355233","wikidata":"https://www.wikidata.org/wiki/Q7162","display_name":"Genetics","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3551349.3559530","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3551349.3559530","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3551349.3559530","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 37th IEEE/ACM International Conference on Automated Software Engineering","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3551349.3559530","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3551349.3559530","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3551349.3559530","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 37th IEEE/ACM International Conference on Automated Software Engineering","raw_type":"proceedings-article"},"sustainable_development_goals":[{"score":0.4099999964237213,"display_name":"Partnerships for the goals","id":"https://metadata.un.org/sdg/17"}],"awards":[{"id":"https://openalex.org/G200098691","display_name":null,"funder_award_id":"CCF-1901098, CCF-1817242","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2014798942","display_name":null,"funder_award_id":"2008660","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G2447864326","display_name":null,"funder_award_id":"CF-2008660, CCF-1901098, CCF-1817242","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G3850684886","display_name":null,"funder_award_id":"1901098","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G417020745","display_name":null,"funder_award_id":"CCF-1901098","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4242646364","display_name":"SHF: Small: Differential Policy Verification and Repair for Access Control in the Cloud","funder_award_id":"1817242","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G4294274658","display_name":null,"funder_award_id":"CCF-2008660","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G5936121604","display_name":null,"funder_award_id":"CCF-2008660, CCF-1901098, CCF-1817242","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"},{"id":"https://openalex.org/G6900814874","display_name":null,"funder_award_id":"F-1817","funder_id":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation"}],"funders":[{"id":"https://openalex.org/F4320306076","display_name":"National Science Foundation","ror":"https://ror.org/021nxhr62"}],"has_content":{"grobid_xml":true,"pdf":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4313549859.pdf","grobid_xml":"https://content.openalex.org/works/W4313549859.grobid-xml"},"referenced_works_count":6,"referenced_works":["https://openalex.org/W1023119160","https://openalex.org/W1480909796","https://openalex.org/W2064070192","https://openalex.org/W2899008271","https://openalex.org/W2908957302","https://openalex.org/W4284675888"],"related_works":["https://openalex.org/W1772345770","https://openalex.org/W2067071563","https://openalex.org/W2057819191","https://openalex.org/W2327940634","https://openalex.org/W2802512828","https://openalex.org/W28453658","https://openalex.org/W1974325298","https://openalex.org/W2136312846","https://openalex.org/W2155646513","https://openalex.org/W4375852419"],"abstract_inverted_index":{"quacky":[0,17,38,77],"is":[1,44,70,110],"a":[2,15,21,26],"tool":[3],"for":[4],"quantifying":[5],"permissiveness":[6,52],"of":[7],"access":[8,73,79],"control":[9,80],"policies":[10,81],"in":[11,83],"the":[12,50,54,84],"cloud.":[13],"Given":[14],"policy,":[16],"translates":[18],"it":[19],"into":[20],"SMT":[22],"formula":[23],"and":[24,90,96,106,112],"uses":[25],"model":[27],"counting":[28],"constraint":[29],"solver":[30],"to":[31,74],"quantify":[32],"permissiveness.":[33],"When":[34],"given":[35],"multiple":[36],"policies,":[37,64],"not":[39],"only":[40],"determines":[41],"which":[42],"policy":[43,58,101],"more":[45],"permissive,":[46],"but":[47],"also":[48],"quantifies":[49],"relative":[51],"between":[53],"policies.":[55],"With":[56],"quacky,":[57],"authors":[59],"can":[60],"automatically":[61],"analyze":[62],"complex":[63],"helping":[65],"them":[66],"ensure":[67],"that":[68],"there":[69],"no":[71],"unintended":[72],"private":[75],"data.":[76],"supports":[78],"written":[82],"Amazon":[85],"Web":[86],"Services":[87],"(AWS)":[88],"Identity":[89],"Access":[91],"Management":[92],"(IAM),":[93],"Microsoft":[94],"Azure,":[95],"Google":[97],"Cloud":[98],"Platform":[99],"(GCP)":[100],"languages.":[102],"It":[103,109],"has":[104],"command-line":[105],"web":[107],"interfaces.":[108],"open-source":[111],"available":[113],"at":[114],"https://github.com/vlab-cs-ucsb/quacky.":[115]},"counts_by_year":[{"year":2025,"cited_by_count":2},{"year":2024,"cited_by_count":1}],"updated_date":"2026-03-18T14:38:29.013473","created_date":"2025-10-10T00:00:00"}
