{"id":"https://openalex.org/W4410692795","doi":"https://doi.org/10.1145/3736764","title":"Semantically Correct Policy Mining and Enforcement for Attribute Based Access Control","display_name":"Semantically Correct Policy Mining and Enforcement for Attribute Based Access Control","publication_year":2025,"publication_date":"2025-05-23","ids":{"openalex":"https://openalex.org/W4410692795","doi":"https://doi.org/10.1145/3736764","pmid":"https://pubmed.ncbi.nlm.nih.gov/41626279"},"language":"en","primary_location":{"id":"doi:10.1145/3736764","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3736764","pdf_url":null,"source":{"id":"https://openalex.org/S97833917","display_name":"ACM Transactions on Internet Technology","issn_l":"1533-5399","issn":["1533-5399","1557-6051"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":"cc-by-nc-sa","license_id":"https://openalex.org/licenses/cc-by-nc-sa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Internet Technology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref","pubmed"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://doi.org/10.1145/3736764","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5003865035","display_name":"Gunjan Batra","orcid":"https://orcid.org/0000-0001-6954-6501"},"institutions":[{"id":"https://openalex.org/I172980758","display_name":"Kennesaw State University","ror":"https://ror.org/00jeqjx33","country_code":"US","type":"education","lineage":["https://openalex.org/I172980758"]}],"countries":["US"],"is_corresponding":true,"raw_author_name":"Gunjan Batra","raw_affiliation_strings":["Information Systems and Security, Coles College of Business, Kennesaw State University","Information Systems and Security, Coles College of Business, Kennesaw State University, Kennesaw, United States"],"affiliations":[{"raw_affiliation_string":"Information Systems and Security, Coles College of Business, Kennesaw State University","institution_ids":["https://openalex.org/I172980758"]},{"raw_affiliation_string":"Information Systems and Security, Coles College of Business, Kennesaw State University, Kennesaw, United States","institution_ids":["https://openalex.org/I172980758"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019787718","display_name":"Samir Talegaon","orcid":"https://orcid.org/0000-0002-5700-7137"},"institutions":[{"id":"https://openalex.org/I7863295","display_name":"Villanova University","ror":"https://ror.org/02g7kd627","country_code":"US","type":"education","lineage":["https://openalex.org/I7863295"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Samir Talegaon","raw_affiliation_strings":["Villanova University","Villanova University,  Villanova, United States"],"affiliations":[{"raw_affiliation_string":"Villanova University","institution_ids":["https://openalex.org/I7863295"]},{"raw_affiliation_string":"Villanova University,  Villanova, United States","institution_ids":["https://openalex.org/I7863295"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5084845728","display_name":"Vijayalakshmi Atluri","orcid":"https://orcid.org/0000-0003-2068-780X"},"institutions":[{"id":"https://openalex.org/I102322142","display_name":"Rutgers, The State University of New Jersey","ror":"https://ror.org/05vt9qd57","country_code":"US","type":"education","lineage":["https://openalex.org/I102322142"]},{"id":"https://openalex.org/I4210096112","display_name":"Rutgers Sexual and Reproductive Health and Rights","ror":"https://ror.org/00rcvgx40","country_code":"NL","type":"other","lineage":["https://openalex.org/I4210096112"]}],"countries":["NL","US"],"is_corresponding":false,"raw_author_name":"Vijayalakshmi Atluri","raw_affiliation_strings":["MSIS, Rutgers Business School, Rutgers University","MSIS, Rutgers Business School, Rutgers University, Newark, United States"],"affiliations":[{"raw_affiliation_string":"MSIS, Rutgers Business School, Rutgers University","institution_ids":["https://openalex.org/I4210096112"]},{"raw_affiliation_string":"MSIS, Rutgers Business School, Rutgers University, Newark, United States","institution_ids":["https://openalex.org/I102322142"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5034878799","display_name":"Jaideep Vaidya","orcid":"https://orcid.org/0000-0002-7420-6947"},"institutions":[{"id":"https://openalex.org/I102322142","display_name":"Rutgers, The State University of New Jersey","ror":"https://ror.org/05vt9qd57","country_code":"US","type":"education","lineage":["https://openalex.org/I102322142"]},{"id":"https://openalex.org/I4210096112","display_name":"Rutgers Sexual and Reproductive Health and Rights","ror":"https://ror.org/00rcvgx40","country_code":"NL","type":"other","lineage":["https://openalex.org/I4210096112"]}],"countries":["NL","US"],"is_corresponding":false,"raw_author_name":"Jaideep Vaidya","raw_affiliation_strings":["MSIS, , Rutgers Business School, Rutgers University","MSIS, , Rutgers Business School, Rutgers University, Newark, United States"],"affiliations":[{"raw_affiliation_string":"MSIS, , Rutgers Business School, Rutgers University","institution_ids":["https://openalex.org/I4210096112"]},{"raw_affiliation_string":"MSIS, , Rutgers Business School, Rutgers University, Newark, United States","institution_ids":["https://openalex.org/I102322142"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5036571304","display_name":"Shamik Sural","orcid":"https://orcid.org/0000-0002-4315-7329"},"institutions":[{"id":"https://openalex.org/I145894827","display_name":"Indian Institute of Technology Kharagpur","ror":"https://ror.org/03w5sq511","country_code":"IN","type":"education","lineage":["https://openalex.org/I145894827"]}],"countries":["IN"],"is_corresponding":false,"raw_author_name":"Shamik Sural","raw_affiliation_strings":["Indian Institute of Technology Kharagpur","Indian Institute of Technology Kharagpur,  Kharagpur, India"],"affiliations":[{"raw_affiliation_string":"Indian Institute of Technology Kharagpur","institution_ids":["https://openalex.org/I145894827"]},{"raw_affiliation_string":"Indian Institute of Technology Kharagpur,  Kharagpur, India","institution_ids":["https://openalex.org/I145894827"]}]}],"institutions":[],"countries_distinct_count":3,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5003865035"],"corresponding_institution_ids":["https://openalex.org/I172980758"],"apc_list":null,"apc_paid":null,"fwci":8.0194,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.96486234,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":98,"max":99},"biblio":{"volume":"25","issue":"4","first_page":"1","last_page":"20"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11598","display_name":"Internet Traffic Analysis and Secure E-voting","score":0.9897000193595886,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9879999756813049,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.925321102142334},{"id":"https://openalex.org/keywords/enforcement","display_name":"Enforcement","score":0.6412582397460938},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.6121808290481567},{"id":"https://openalex.org/keywords/law-enforcement","display_name":"Law enforcement","score":0.5278152227401733},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.5047405958175659},{"id":"https://openalex.org/keywords/control","display_name":"Control (management)","score":0.46458700299263},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.37406471371650696},{"id":"https://openalex.org/keywords/information-retrieval","display_name":"Information retrieval","score":0.36375105381011963},{"id":"https://openalex.org/keywords/data-science","display_name":"Data science","score":0.3594489097595215},{"id":"https://openalex.org/keywords/data-mining","display_name":"Data mining","score":0.3566676378250122},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.27931007742881775},{"id":"https://openalex.org/keywords/law","display_name":"Law","score":0.12198266386985779}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.925321102142334},{"id":"https://openalex.org/C2779777834","wikidata":"https://www.wikidata.org/wiki/Q4202277","display_name":"Enforcement","level":2,"score":0.6412582397460938},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.6121808290481567},{"id":"https://openalex.org/C2780262971","wikidata":"https://www.wikidata.org/wiki/Q44554","display_name":"Law enforcement","level":2,"score":0.5278152227401733},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5047405958175659},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.46458700299263},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.37406471371650696},{"id":"https://openalex.org/C23123220","wikidata":"https://www.wikidata.org/wiki/Q816826","display_name":"Information retrieval","level":1,"score":0.36375105381011963},{"id":"https://openalex.org/C2522767166","wikidata":"https://www.wikidata.org/wiki/Q2374463","display_name":"Data science","level":1,"score":0.3594489097595215},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.3566676378250122},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.27931007742881775},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.12198266386985779},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0}],"mesh":[],"locations_count":4,"locations":[{"id":"doi:10.1145/3736764","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3736764","pdf_url":null,"source":{"id":"https://openalex.org/S97833917","display_name":"ACM Transactions on Internet Technology","issn_l":"1533-5399","issn":["1533-5399","1557-6051"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":"cc-by-nc-sa","license_id":"https://openalex.org/licenses/cc-by-nc-sa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Internet Technology","raw_type":"journal-article"},{"id":"pmid:41626279","is_oa":false,"landing_page_url":"https://pubmed.ncbi.nlm.nih.gov/41626279","pdf_url":null,"source":{"id":"https://openalex.org/S4306525036","display_name":"PubMed","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM transactions on Internet technology","raw_type":null},{"id":"pmh:oai:europepmc.org:11660187","is_oa":false,"landing_page_url":"https://www.ncbi.nlm.nih.gov/pmc/articles/12854711","pdf_url":null,"source":{"id":"https://openalex.org/S4306400806","display_name":"Europe PMC (PubMed Central)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1303153112","host_organization_name":"European Bioinformatics Institute","host_organization_lineage":["https://openalex.org/I1303153112"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":null,"raw_type":"Text"},{"id":"pmh:oai:pubmedcentral.nih.gov:12854711","is_oa":true,"landing_page_url":"https://pmc.ncbi.nlm.nih.gov/articles/PMC12854711/","pdf_url":null,"source":{"id":"https://openalex.org/S2764455111","display_name":"PubMed Central","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I1299303238","host_organization_name":"National Institutes of Health","host_organization_lineage":["https://openalex.org/I1299303238"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"ACM Trans Internet Technol","raw_type":"Text"}],"best_oa_location":{"id":"doi:10.1145/3736764","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3736764","pdf_url":null,"source":{"id":"https://openalex.org/S97833917","display_name":"ACM Transactions on Internet Technology","issn_l":"1533-5399","issn":["1533-5399","1557-6051"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310319798","host_organization_name":"Association for Computing Machinery","host_organization_lineage":["https://openalex.org/P4310319798"],"host_organization_lineage_names":["Association for Computing Machinery"],"type":"journal"},"license":"cc-by-nc-sa","license_id":"https://openalex.org/licenses/cc-by-nc-sa","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"ACM Transactions on Internet Technology","raw_type":"journal-article"},"sustainable_development_goals":[],"awards":[{"id":"https://openalex.org/G1211196991","display_name":null,"funder_award_id":"R35GM134927","funder_id":"https://openalex.org/F4320332161","funder_display_name":"National Institutes of Health"}],"funders":[{"id":"https://openalex.org/F4320332161","display_name":"National Institutes of Health","ror":"https://ror.org/01cwqze88"}],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":38,"referenced_works":["https://openalex.org/W1015545679","https://openalex.org/W1037096493","https://openalex.org/W1465130679","https://openalex.org/W2111967310","https://openalex.org/W2131778843","https://openalex.org/W2143417879","https://openalex.org/W2154765153","https://openalex.org/W2163328802","https://openalex.org/W2523167990","https://openalex.org/W2601096670","https://openalex.org/W2608908098","https://openalex.org/W2617906815","https://openalex.org/W2619305693","https://openalex.org/W2774959022","https://openalex.org/W2792575262","https://openalex.org/W2805336398","https://openalex.org/W2817857516","https://openalex.org/W2903477438","https://openalex.org/W2913369986","https://openalex.org/W2914854069","https://openalex.org/W2922789912","https://openalex.org/W2962744771","https://openalex.org/W2969381679","https://openalex.org/W2973335188","https://openalex.org/W2986723656","https://openalex.org/W2991141347","https://openalex.org/W3007490601","https://openalex.org/W3123491145","https://openalex.org/W3127171762","https://openalex.org/W3138476888","https://openalex.org/W3154990653","https://openalex.org/W3201451468","https://openalex.org/W4282570022","https://openalex.org/W4312433134","https://openalex.org/W4366544915","https://openalex.org/W4391069391","https://openalex.org/W4406241543","https://openalex.org/W6792224108"],"related_works":["https://openalex.org/W4226026301","https://openalex.org/W2099704814","https://openalex.org/W3046446793","https://openalex.org/W3125992077","https://openalex.org/W1580010780","https://openalex.org/W2138148318","https://openalex.org/W2009765263","https://openalex.org/W3121915999","https://openalex.org/W4252664052","https://openalex.org/W4251875448"],"abstract_inverted_index":{"Attribute-Based":[0],"Access":[1],"Control":[2],"(ABAC)":[3],"is":[4,40,88,97,138,165,182,192,268],"increasingly":[5],"becoming":[6],"popular":[7],"due":[8],"to":[9,43,91,99,168,178,184,199],"its":[10,103,156,179],"dynamic,":[11],"flexible,":[12],"portable,":[13],"and":[14,35,111,115,188,223,243,249,266],"scalable":[15],"nature.":[16],"Under":[17],"ABAC,":[18],"security":[19,267],"policies":[20],"(ABAC":[21],"rules)":[22],"are":[23,51],"stated":[24],"in":[25,123,196],"terms":[26],"of":[27,30,56,102,132,135,155,211,219],"the":[28,31,33,36,64,69,77,80,108,129,133,136,146,185,193,197,208,240,246],"attributes":[29,78,213],"subject,":[32],"object":[34,45,212],"environment.":[37],"A":[38],"subject":[39,87,96,164],"granted":[41],"access":[42,90,100,167,177],"an":[44],"if":[46,85,162,237],"their":[47],"respective":[48],"attribute":[49],"values":[50],"satisfied":[52],"against":[53],"a":[54,86,92,163,169],"set":[55],"ABAC":[57,113,137,204],"rules.":[58],"Typically":[59],"hierarchical":[60],"relationships":[61],"exist":[62],"among":[63],"subjects":[65,74],"as":[66,68,232,234],"well":[67,233],"objects,":[70],"where":[71],"more":[72,151],"specific":[73,147],"(objects)":[75],"inherit":[76],"from":[79,207],"general":[81,93,109,130,157,170],"ones.":[82],"As":[83],"such,":[84],"allowed":[89,98,166,176],"object,":[94],"that":[95,128,154,160,262],"all":[101],"sub-types.":[104],"This":[105,190],"has":[106],"been":[107],"understanding":[110,131,187],"current":[112,186],"enforcement":[114,248],"policy":[116],"mining":[117,250],"approaches":[118],"follow":[119],"this":[120,124],"approach.":[121],"However,":[122],"article,":[125],"we":[126],"argue":[127],"semantics":[134,205,210,222,242],"not":[139,174],"always":[140],"appropriate.":[141],"Indeed,":[142],"under":[143],"certain":[144],"semantics,":[145],"data":[148],"may":[149],"be":[150,175,259],"sensitive":[152],"than":[153],"counterpart.":[158],"In":[159],"situation,":[161],"type,":[171],"it":[172],"should":[173],"sub-type,":[180],"which":[181],"contrary":[183],"implementation.":[189],"paper":[191],"first":[194],"attempt":[195],"literature":[198],"distinguish":[200],"these":[201,220],"two":[202,221],"different":[203,209],"arising":[206],"themselves.":[214],"We":[215,252],"present":[216,254],"concrete":[217],"examples":[218],"demonstrate":[224],"what":[225],"can":[226,258],"go":[227],"wrong":[228],"-":[229,236],"both":[230],"anecdotally":[231],"empirically":[235],"one":[238],"ignores":[239],"underlying":[241],"inappropriately":[244],"uses":[245],"existing":[247,256],"algorithms.":[251],"then":[253],"how":[255],"algorithms":[257],"modified":[260],"so":[261],"no":[263],"misconfigurations":[264],"arise":[265],"ensured.":[269]},"counts_by_year":[{"year":2026,"cited_by_count":2}],"updated_date":"2026-04-09T08:11:56.329763","created_date":"2025-10-10T00:00:00"}
