{"id":"https://openalex.org/W4250327338","doi":"https://doi.org/10.18293/seke2015-49","title":"Secure, Dynamic and Distributed Access Control Stack for Database Applications","display_name":"Secure, Dynamic and Distributed Access Control Stack for Database Applications","publication_year":2015,"publication_date":"2015-07-01","ids":{"openalex":"https://openalex.org/W4250327338","doi":"https://doi.org/10.18293/seke2015-49"},"language":"en","primary_location":{"id":"doi:10.18293/seke2015-49","is_oa":true,"landing_page_url":"http://doi.org/10.18293/seke2015-49","pdf_url":"https://doi.org/10.18293/seke2015-49","source":{"id":"https://openalex.org/S4220650826","display_name":"Proceedings/Proceedings of the ... International Conference on Software Engineering and Knowledge Engineering","issn_l":"2325-9000","issn":["2325-9000","2325-9086"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Conferences on Software Engineering and Knowledge Engineering","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://doi.org/10.18293/seke2015-49","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5042763707","display_name":"\u00d3scar Mort\u00e1gua Pereira","orcid":"https://orcid.org/0000-0002-1742-6927"},"institutions":[{"id":"https://openalex.org/I4210120471","display_name":"Instituto de Telecomunica\u00e7\u00f5es","ror":"https://ror.org/02ht4fk33","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I4210120471"]},{"id":"https://openalex.org/I60858718","display_name":"University of Aveiro","ror":"https://ror.org/00nt41z93","country_code":"PT","type":"education","lineage":["https://openalex.org/I60858718"]}],"countries":["PT"],"is_corresponding":false,"raw_author_name":"Oscar Pereira","raw_affiliation_strings":["Instituto de Telecomunica\u00e7\u00f5es DETI, University of Aveiro Aveiro, Portugal"],"affiliations":[{"raw_affiliation_string":"Instituto de Telecomunica\u00e7\u00f5es DETI, University of Aveiro Aveiro, Portugal","institution_ids":["https://openalex.org/I4210120471","https://openalex.org/I60858718"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5069369120","display_name":"Diogo Domingues Regateiro","orcid":"https://orcid.org/0000-0002-9569-9656"},"institutions":[{"id":"https://openalex.org/I60858718","display_name":"University of Aveiro","ror":"https://ror.org/00nt41z93","country_code":"PT","type":"education","lineage":["https://openalex.org/I60858718"]},{"id":"https://openalex.org/I4210120471","display_name":"Instituto de Telecomunica\u00e7\u00f5es","ror":"https://ror.org/02ht4fk33","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I4210120471"]}],"countries":["PT"],"is_corresponding":true,"raw_author_name":"Diogo Regateiro","raw_affiliation_strings":["Instituto de Telecomunica\u00e7\u00f5es DETI, University of Aveiro Aveiro, Portugal"],"affiliations":[{"raw_affiliation_string":"Instituto de Telecomunica\u00e7\u00f5es DETI, University of Aveiro Aveiro, Portugal","institution_ids":["https://openalex.org/I4210120471","https://openalex.org/I60858718"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5090429145","display_name":"Rui L. Aguiar","orcid":"https://orcid.org/0000-0003-0107-6253"},"institutions":[{"id":"https://openalex.org/I4210120471","display_name":"Instituto de Telecomunica\u00e7\u00f5es","ror":"https://ror.org/02ht4fk33","country_code":"PT","type":"nonprofit","lineage":["https://openalex.org/I4210120471"]},{"id":"https://openalex.org/I60858718","display_name":"University of Aveiro","ror":"https://ror.org/00nt41z93","country_code":"PT","type":"education","lineage":["https://openalex.org/I60858718"]}],"countries":["PT"],"is_corresponding":true,"raw_author_name":"Rui Aguiar","raw_affiliation_strings":["Instituto de Telecomunica\u00e7\u00f5es DETI, University of Aveiro Aveiro, Portugal"],"affiliations":[{"raw_affiliation_string":"Instituto de Telecomunica\u00e7\u00f5es DETI, University of Aveiro Aveiro, Portugal","institution_ids":["https://openalex.org/I4210120471","https://openalex.org/I60858718"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5069369120","https://openalex.org/A5090429145"],"corresponding_institution_ids":["https://openalex.org/I4210120471","https://openalex.org/I60858718"],"apc_list":null,"apc_paid":null,"fwci":1.0246,"has_fulltext":true,"cited_by_count":1,"citation_normalized_percentile":{"value":0.89193404,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":94},"biblio":{"volume":null,"issue":null,"first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},"topics":[{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9998999834060669,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9993000030517578,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9983999729156494,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8314427733421326},{"id":"https://openalex.org/keywords/database","display_name":"Database","score":0.6507933139801025},{"id":"https://openalex.org/keywords/server","display_name":"Server","score":0.6365927457809448},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.6341812014579773},{"id":"https://openalex.org/keywords/enforcement","display_name":"Enforcement","score":0.5084887742996216},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4819655120372772},{"id":"https://openalex.org/keywords/database-server","display_name":"Database server","score":0.47907501459121704},{"id":"https://openalex.org/keywords/mandatory-access-control","display_name":"Mandatory access control","score":0.46703335642814636},{"id":"https://openalex.org/keywords/security-policy","display_name":"Security policy","score":0.46122509241104126},{"id":"https://openalex.org/keywords/database-security","display_name":"Database security","score":0.45302528142929077},{"id":"https://openalex.org/keywords/field","display_name":"Field (mathematics)","score":0.41399693489074707},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.1865328550338745},{"id":"https://openalex.org/keywords/role-based-access-control","display_name":"Role-based access control","score":0.1862628161907196}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8314427733421326},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.6507933139801025},{"id":"https://openalex.org/C93996380","wikidata":"https://www.wikidata.org/wiki/Q44127","display_name":"Server","level":2,"score":0.6365927457809448},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.6341812014579773},{"id":"https://openalex.org/C2779777834","wikidata":"https://www.wikidata.org/wiki/Q4202277","display_name":"Enforcement","level":2,"score":0.5084887742996216},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4819655120372772},{"id":"https://openalex.org/C205295232","wikidata":"https://www.wikidata.org/wiki/Q76320","display_name":"Database server","level":2,"score":0.47907501459121704},{"id":"https://openalex.org/C2777407602","wikidata":"https://www.wikidata.org/wiki/Q1888932","display_name":"Mandatory access control","level":4,"score":0.46703335642814636},{"id":"https://openalex.org/C154908896","wikidata":"https://www.wikidata.org/wiki/Q2167404","display_name":"Security policy","level":2,"score":0.46122509241104126},{"id":"https://openalex.org/C2778553114","wikidata":"https://www.wikidata.org/wiki/Q1035293","display_name":"Database security","level":2,"score":0.45302528142929077},{"id":"https://openalex.org/C9652623","wikidata":"https://www.wikidata.org/wiki/Q190109","display_name":"Field (mathematics)","level":2,"score":0.41399693489074707},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.1865328550338745},{"id":"https://openalex.org/C45567728","wikidata":"https://www.wikidata.org/wiki/Q1702839","display_name":"Role-based access control","level":3,"score":0.1862628161907196},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C202444582","wikidata":"https://www.wikidata.org/wiki/Q837863","display_name":"Pure mathematics","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.18293/seke2015-49","is_oa":true,"landing_page_url":"http://doi.org/10.18293/seke2015-49","pdf_url":"https://doi.org/10.18293/seke2015-49","source":{"id":"https://openalex.org/S4220650826","display_name":"Proceedings/Proceedings of the ... International Conference on Software Engineering and Knowledge Engineering","issn_l":"2325-9000","issn":["2325-9000","2325-9086"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Conferences on Software Engineering and Knowledge Engineering","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.18293/seke2015-49","is_oa":true,"landing_page_url":"http://doi.org/10.18293/seke2015-49","pdf_url":"https://doi.org/10.18293/seke2015-49","source":{"id":"https://openalex.org/S4220650826","display_name":"Proceedings/Proceedings of the ... International Conference on Software Engineering and Knowledge Engineering","issn_l":"2325-9000","issn":["2325-9000","2325-9086"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"International Conferences on Software Engineering and Knowledge Engineering","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4250327338.pdf","grobid_xml":"https://content.openalex.org/works/W4250327338.grobid-xml"},"referenced_works_count":26,"referenced_works":["https://openalex.org/W1493269895","https://openalex.org/W1569403765","https://openalex.org/W1580968850","https://openalex.org/W1803872181","https://openalex.org/W1965457815","https://openalex.org/W1997199359","https://openalex.org/W1999984505","https://openalex.org/W2005236917","https://openalex.org/W2024176214","https://openalex.org/W2043226436","https://openalex.org/W2053103282","https://openalex.org/W2113820952","https://openalex.org/W2114917462","https://openalex.org/W2124321177","https://openalex.org/W2137445067","https://openalex.org/W2161824253","https://openalex.org/W2169463543","https://openalex.org/W2294395356","https://openalex.org/W2399365834","https://openalex.org/W4235474748","https://openalex.org/W6629457665","https://openalex.org/W6634395326","https://openalex.org/W6636961655","https://openalex.org/W6638604481","https://openalex.org/W6678205474","https://openalex.org/W6680684965"],"related_works":["https://openalex.org/W2158881272","https://openalex.org/W2350594541","https://openalex.org/W2295582286","https://openalex.org/W2539425047","https://openalex.org/W1482564230","https://openalex.org/W2393973626","https://openalex.org/W2012419258","https://openalex.org/W2187008258","https://openalex.org/W318167434","https://openalex.org/W2199355632"],"abstract_inverted_index":{"In":[0,104],"database":[1,16,53,176],"applications,":[2,177],"access":[3,116,173],"control":[4,117,174],"security":[5,102,131,135],"layers":[6],"are":[7,43,125,137],"mostly":[8],"developed":[9],"from":[10],"tools":[11],"provided":[12],"by":[13],"vendors":[14],"of":[15,52,122,157,187],"management":[17],"systems":[18],"and":[19],"deployed":[20,69,126],"in":[21,58,64,83,110,175,190],"the":[22,26,59,65,71,80,96,123,128,134,158,185,188,191],"same":[23],"servers":[24],"containing":[25],"data":[27],"to":[28,49,99,106,161,171,181,184],"be":[29],"protected.":[30],"This":[31,165],"solution":[32],"conveys":[33],"several":[34],"drawbacks.":[35],"Among":[36],"them":[37],"we":[38,113],"emphasize:":[39],"1)":[40],"if":[41],"policies":[42,61,132],"complex,":[44],"their":[45],"enforcement":[46],"can":[47,90],"lead":[48],"performance":[50],"decay":[51],"servers;":[54],"2)":[55],"when":[56],"modifications":[57,63],"established":[60],"implies":[62],"business":[66,81],"logic":[67,82],"(usually":[68],"at":[70,127,140],"client-side),":[72],"there":[73],"is":[74],"no":[75],"other":[76],"possibility":[77],"than":[78],"modify":[79],"advance":[84],"and,":[85,142],"finally,":[86,143],"3)":[87],"malicious":[88],"users":[89],"issue":[91],"CRUD":[92,149],"expressions":[93,150],"systematically":[94],"against":[95],"DBMS":[97],"expecting":[98,180],"identify":[100],"any":[101],"gap.":[103],"order":[105],"overcome":[107],"these":[108],"drawbacks,":[109],"this":[111,178],"paper":[112,166],"propose":[114],"an":[115,155],"stack":[118,160],"characterized":[119],"by:":[120],"most":[121],"mechanisms":[124,136],"client-side;":[129],"whenever":[130],"evolve,":[133],"automatically":[138],"updated":[139],"runtime":[141],"client-side":[144],"applications":[145],"do":[146],"not":[147],"handle":[148],"directly.":[151],"We":[152],"also":[153],"present":[154],"implementation":[156],"proposed":[159],"prove":[162],"its":[163],"feasibility.":[164],"presents":[167],"a":[168],"new":[169],"approach":[170],"enforce":[172],"way":[179],"contribute":[182],"positively":[183],"state":[186],"art":[189],"field.":[192]},"counts_by_year":[{"year":2018,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
