RuleKeeper: GDPR-aware personal data compliance for web frameworks

M Ferreira, T Brito, JF Santos… - 2023 IEEE Symposium …, 2023 - ieeexplore.ieee.org
Pressured by existing regulations such as the EU GDPR, online services must advertise a
personal data protection policy declaring the types and purposes of collected personal data …

{SIGL}: Securing software installations through deep graph learning

X Han, X Yu, T Pasquier, D Li, J Rhee… - 30th USENIX Security …, 2021 - usenix.org
Many users implicitly assume that software can only be exploited after it is installed.
However, recent supply-chain attacks demonstrate that application integrity must be ensured …

Peekaboo: A hub-based approach to enable transparency in data processing within smart homes

H **, G Liu, D Hwang, S Kumar… - … IEEE symposium on …, 2022 - ieeexplore.ieee.org
We present Peekaboo, a new privacy-sensitive architecture for smart homes that leverages
an in-home hub to pre-process and minimize outgoing data in a structured and enforceable …

Zeph: Cryptographic enforcement of end-to-end data privacy

L Burkhalter, N Küchler, A Viand, H Shafagh… - … on Operating Systems …, 2021 - usenix.org
As increasingly more sensitive data is being collected to gain valuable insights, the need to
natively integrate privacy controls in data analytics frameworks is growing in importance …

K9db:{Privacy-Compliant} Storage For Web Applications By Construction

KD Albab, I Sharma, J Adam, B Kilimnik… - … USENIX Symposium on …, 2023 - usenix.org
Data privacy laws like the EU's GDPR grant users new rights, such as the right to request
access to and deletion of their data. Manual compliance with these requests is error-prone …

Privsso: Practical single-sign-on authentication against subscription/access pattern leakage

G Gao, Y Zhang, Y Song, S Li - IEEE Transactions on …, 2024 - ieeexplore.ieee.org
Single-sign-on (SSO) authentication employs an identity provider (IdP) to provide users with
an efficient way to authenticate themselves with different service providers and has been …

{PrivGuard}: Privacy regulation compliance made easier

L Wang, U Khan, J Near, Q Pang… - 31st USENIX Security …, 2022 - usenix.org
Continuous compliance with privacy regulations, such as GDPR and CCPA, has become a
costly burden for companies from small-sized start-ups to business giants. The culprit is the …

Position: GDPR compliance by construction

M Schwarzkopf, E Kohler, M Frans Kaashoek… - … , and Analytics for …, 2019 - Springer
New laws such as the European Union's General Data Protection Regulation (GDPR) grant
users unprecedented control over personal data stored and processed by businesses …

{STORM}: Refinement types for secure web applications

N Lehmann, R Kunkel, J Brown, J Yang… - … on Operating Systems …, 2021 - usenix.org
We present Storm, a web framework that allows developers to build MVC applications with
compile-time enforcement of centrally specified data-dependent security policies. Storm …

[PDF][PDF] Growlithe: A Developer-Centric Compliance Tool for Serverless Applications

P Gupta, A Moghimi, D Sisodraker… - … IEEE Symposium on …, 2024 - cirrus.ece.ubc.ca
Serverless applications consist of functions written in heterogeneous programming
languages, use diverse data stores and communication services, and evolve rapidly …