{"id":"https://openalex.org/W4285602523","doi":"https://doi.org/10.24963/ijcai.2022/257","title":"Using Constraint Programming and Graph Representation Learning for Generating Interpretable Cloud Security Policies","display_name":"Using Constraint Programming and Graph Representation Learning for Generating Interpretable Cloud Security Policies","publication_year":2022,"publication_date":"2022-07-01","ids":{"openalex":"https://openalex.org/W4285602523","doi":"https://doi.org/10.24963/ijcai.2022/257"},"language":"en","primary_location":{"id":"doi:10.24963/ijcai.2022/257","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2022/257","pdf_url":"https://www.ijcai.org/proceedings/2022/0257.pdf","source":{"id":"https://openalex.org/S4363608755","display_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://www.ijcai.org/proceedings/2022/0257.pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5027668927","display_name":"Mikhail Kazdagli","orcid":null},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mikhail Kazdagli","raw_affiliation_strings":["Symmetry Systems","The University of Texas at Austin"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Symmetry Systems","institution_ids":[]},{"raw_affiliation_string":"The University of Texas at Austin","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5071185644","display_name":"Mohit Tiwari","orcid":"https://orcid.org/0000-0003-1836-3451"},"institutions":[{"id":"https://openalex.org/I86519309","display_name":"The University of Texas at Austin","ror":"https://ror.org/00hj54h04","country_code":"US","type":"education","lineage":["https://openalex.org/I86519309"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Mohit Tiwari","raw_affiliation_strings":["Symmetry Systems","The University of Texas at Austin"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Symmetry Systems","institution_ids":[]},{"raw_affiliation_string":"The University of Texas at Austin","institution_ids":["https://openalex.org/I86519309"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5101059249","display_name":"Akshat Kumar","orcid":"https://orcid.org/0009-0003-9157-2505"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Akshat Kumar","raw_affiliation_strings":["Singapore Management University","Symmetry Systems"],"raw_orcid":null,"affiliations":[{"raw_affiliation_string":"Singapore Management University","institution_ids":["https://openalex.org/I79891267"]},{"raw_affiliation_string":"Symmetry Systems","institution_ids":[]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":3,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.2911,"has_fulltext":false,"cited_by_count":2,"citation_normalized_percentile":{"value":0.50829282,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":90,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"1850","last_page":"1858"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9972000122070312,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9972000122070312,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12127","display_name":"Software System Performance and Reliability","score":0.9961000084877014,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9937000274658203,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8168374300003052},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.7504779100418091},{"id":"https://openalex.org/keywords/backdoor","display_name":"Backdoor","score":0.7287961840629578},{"id":"https://openalex.org/keywords/representation","display_name":"Representation (politics)","score":0.5320307612419128},{"id":"https://openalex.org/keywords/constraint","display_name":"Constraint (computer-aided design)","score":0.4841347634792328},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.4741375148296356},{"id":"https://openalex.org/keywords/constraint-programming","display_name":"Constraint programming","score":0.4587779939174652},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4218660295009613},{"id":"https://openalex.org/keywords/machine-learning","display_name":"Machine learning","score":0.3767017424106598},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.29267606139183044}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8168374300003052},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.7504779100418091},{"id":"https://openalex.org/C2781045450","wikidata":"https://www.wikidata.org/wiki/Q254569","display_name":"Backdoor","level":2,"score":0.7287961840629578},{"id":"https://openalex.org/C2776359362","wikidata":"https://www.wikidata.org/wiki/Q2145286","display_name":"Representation (politics)","level":3,"score":0.5320307612419128},{"id":"https://openalex.org/C2776036281","wikidata":"https://www.wikidata.org/wiki/Q48769818","display_name":"Constraint (computer-aided design)","level":2,"score":0.4841347634792328},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.4741375148296356},{"id":"https://openalex.org/C173404611","wikidata":"https://www.wikidata.org/wiki/Q528588","display_name":"Constraint programming","level":3,"score":0.4587779939174652},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4218660295009613},{"id":"https://openalex.org/C119857082","wikidata":"https://www.wikidata.org/wiki/Q2539","display_name":"Machine learning","level":1,"score":0.3767017424106598},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.29267606139183044},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C94625758","wikidata":"https://www.wikidata.org/wiki/Q7163","display_name":"Politics","level":2,"score":0.0},{"id":"https://openalex.org/C127413603","wikidata":"https://www.wikidata.org/wiki/Q11023","display_name":"Engineering","level":0,"score":0.0},{"id":"https://openalex.org/C137631369","wikidata":"https://www.wikidata.org/wiki/Q7617831","display_name":"Stochastic programming","level":2,"score":0.0},{"id":"https://openalex.org/C17744445","wikidata":"https://www.wikidata.org/wiki/Q36442","display_name":"Political science","level":0,"score":0.0},{"id":"https://openalex.org/C78519656","wikidata":"https://www.wikidata.org/wiki/Q101333","display_name":"Mechanical engineering","level":1,"score":0.0},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.0},{"id":"https://openalex.org/C105795698","wikidata":"https://www.wikidata.org/wiki/Q12483","display_name":"Statistics","level":1,"score":0.0},{"id":"https://openalex.org/C199539241","wikidata":"https://www.wikidata.org/wiki/Q7748","display_name":"Law","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.24963/ijcai.2022/257","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2022/257","pdf_url":"https://www.ijcai.org/proceedings/2022/0257.pdf","source":{"id":"https://openalex.org/S4363608755","display_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.24963/ijcai.2022/257","is_oa":true,"landing_page_url":"https://doi.org/10.24963/ijcai.2022/257","pdf_url":"https://www.ijcai.org/proceedings/2022/0257.pdf","source":{"id":"https://openalex.org/S4363608755","display_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":null,"host_organization_name":null,"host_organization_lineage":[],"host_organization_lineage_names":[],"type":"conference"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the Thirty-First International Joint Conference on Artificial Intelligence","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/17","display_name":"Partnerships for the goals","score":0.4099999964237213}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4285602523.pdf","grobid_xml":"https://content.openalex.org/works/W4285602523.grobid-xml"},"referenced_works_count":23,"referenced_works":["https://openalex.org/W47957325","https://openalex.org/W1553177637","https://openalex.org/W1680189815","https://openalex.org/W1985987493","https://openalex.org/W2002366283","https://openalex.org/W2007857904","https://openalex.org/W2048465382","https://openalex.org/W2097749765","https://openalex.org/W2137365926","https://openalex.org/W2166844173","https://openalex.org/W2399906603","https://openalex.org/W2604314403","https://openalex.org/W2809876556","https://openalex.org/W2934843808","https://openalex.org/W2947745012","https://openalex.org/W2952003386","https://openalex.org/W2963197901","https://openalex.org/W2964015378","https://openalex.org/W3037085720","https://openalex.org/W3092605210","https://openalex.org/W4247833239","https://openalex.org/W4294558607","https://openalex.org/W4361868421"],"related_works":["https://openalex.org/W4320031223","https://openalex.org/W4200629851","https://openalex.org/W4291309325","https://openalex.org/W2950474130","https://openalex.org/W2737452945","https://openalex.org/W4313469555","https://openalex.org/W1547011777","https://openalex.org/W2263461846","https://openalex.org/W1514706798","https://openalex.org/W1985899403"],"abstract_inverted_index":{"Modern":[0],"software":[1],"systems":[2],"rely":[3],"on":[4,32],"mining":[5],"insights":[6],"from":[7,166],"business":[8],"sensitive":[9],"data":[10,16,165],"stored":[11],"in":[12],"public":[13],"clouds.":[14],"A":[15],"breach":[17],"usually":[18],"incurs":[19],"significant":[20],"(monetary)":[21],"loss":[22],"for":[23,64],"a":[24,62,73],"commercial":[25,168],"organization.":[26],"Conceptually,":[27],"cloud":[28,92],"security":[29,161],"heavily":[30],"relies":[31],"Identity":[33],"Access":[34],"Management":[35],"(IAM)":[36],"policies":[37,58,81,110,155],"that":[38,76,151],"IT":[39],"admins":[40],"need":[41],"to":[42,55,107,118,124],"properly":[43],"configure":[44],"and":[45,50,138,149,170],"periodically":[46],"update.":[47],"Security":[48],"negligence":[49],"human":[51],"errors":[52],"often":[53],"lead":[54],"misconfiguring":[56],"IAM":[57,80,109,141,154],"which":[59,98],"may":[60],"open":[61],"backdoor":[63],"attackers.":[65],"To":[66],"address":[67],"these":[68],"challenges,":[69],"first,":[70],"we":[71,112,144],"develop":[72],"novel":[74],"framework":[75],"encodes":[77],"generating":[78],"optimal":[79],"using":[82,163],"constraint":[83],"programming":[84],"(CP).":[85],"We":[86],"identify":[87],"reducing":[88],"dormant":[89],"permissions":[90],"of":[91,122,160],"users":[93,123,133],"as":[94],"an":[95],"optimality":[96],"criterion,":[97],"intuitively":[99],"implies":[100],"minimizing":[101],"unnecessary":[102],"datastore":[103],"access":[104,120],"permissions.":[105],"Second,":[106],"make":[108],"interpretable,":[111],"use":[113],"graph":[114],"representation":[115],"learning":[116],"applied":[117],"historical":[119],"patterns":[121],"augment":[125],"our":[126,152],"CP":[127],"model":[128],"with":[129],"similarity":[130],"constraints:":[131],"similar":[132],"should":[134],"be":[135],"grouped":[136],"together":[137],"share":[139],"common":[140],"policies.":[142],"Third,":[143],"describe":[145],"multiple":[146],"attack":[147],"models":[148],"show":[150],"optimized":[153],"significantly":[156],"reduce":[157],"the":[158],"impact":[159],"attacks":[162],"real":[164],"8":[167],"organizations,":[169],"synthetic":[171],"instances.":[172]},"counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1}],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2025-10-10T00:00:00"}
