83 research outputs found

    Picking battles: The impact of trust assumptions on the elaboration of security requirements

    Get PDF
    This position paper describes work on trust assumptions in the con-text of security requirements. We show how trust assumptions can affect the scope of the analysis, derivation of security requirements, and in some cases how functionality is realized. An example shows how trust assumptions are used by a requirements engineer to help define and limit the scope of analysis and to document the decisions made during the process

    Idea-caution before exploitation:the use of cybersecurity domain knowledge to educate software engineers against software vulnerabilities

    Get PDF
    The transfer of cybersecurity domain knowledge from security experts (‘Ethical Hackers’) to software engineers is discussed in terms of desirability and feasibility. Possible mechanisms for the transfer are critically examined. Software engineering methodologies do not make use of security domain knowledge in its form of vulnerability databases (e.g. CWE, CVE, Exploit DB), which are therefore not appropriate for this purpose. An approach based upon the improved use of pattern languages that encompasses security domain knowledge is proposed

    Prochlo: Strong Privacy for Analytics in the Crowd

    Full text link
    The large-scale monitoring of computer users' software activities has become commonplace, e.g., for application telemetry, error reporting, or demographic profiling. This paper describes a principled systems architecture---Encode, Shuffle, Analyze (ESA)---for performing such monitoring with high utility while also protecting user privacy. The ESA design, and its Prochlo implementation, are informed by our practical experiences with an existing, large deployment of privacy-preserving software monitoring. (cont.; see the paper

    Učinak topljivosti na kinetiku oslobađanja vodotopljivih i vodonetopljivih lijekova iz matriksnog sustava na bazi HPMC

    Get PDF
    The purpose of the present research work was to observe the effects of drug solubility on the release kinetics of water soluble verapamil hydrochloride and insoluble aceclofenac from polymer based matrix formulations. Matrix formulations were prepared by the direct compression method. The formulations were evaluated for various physical parameters. Along with the dynamics of water uptake and erosion, SEM and in vitro drug release of tablets were studied. Applying an exponential equation, it was found that the kinetics of soluble drug release followed anomalous non-Fickian diffusion transport whereas insoluble drug showed zero-order release. SEM study showed pore formation on the tablet surface that differed depending on drug solubility. t-Test pointed to a significant difference in the amount of both drugs released due to their difference in solubility. Solubility of the drug affects the kinetics and the mechanism of drug release.Cilj rada bio je praćenje učinka topljivosti na kinetiku oslobađanja vodotopljivog verapamil hidroklorida i netopljivog lijeka aceklofenaka iz matriksnih sustava na bazi hidrofilnog polimera. Matriksni sustavi pripravljeni su izravnom metodom kompresije. Uz ispitivanje uobičajenih fizikalnih svojstava, ispitivana je i dinamika primanja vode, te erozija, SEM i in vitro oslobađanje ljekovite tvari iz tableta. Primjenom eksponencijalne jednadžbe utvrđeno je da mehanizam oslobađanja topljivih lijekova slijedi anomalni ne-Fickov difuzijski transport, dok netopljivi lijekovi slijede kinetiku nultog reda. SEM ispitivanja pokazala su pore na površini matriksa ovisne o topljivosti ljekovite tvari. T-test ukazuje da količina oslobođenog lijeka značajno ovisi o njegovoj topljivosti. Topljivost lijeka ima značajan učinak na kinetiku i mehanizam oslobađanja

    Developing international business relationships in a Russian context

    Get PDF
    The collapse of the former Soviet Union has opened up a wealth of business opportunities for companies seeking new markets in the Russian Federation. Despite this, firms intending to do business in Russia have found themselves hampered by cultural differences in business practices and expectations. As Russia integrates into the global economy, understanding such practices and the managerial mindset of business people is crucial for managers who hope to navigate Russia's complex markets. This study draws on the trust literature and adopts quantitative tools to deconstruct the Russian 'Sviazi' system of social capital business networking. We develop a model isolating three dimensions of Sviazi: one an affective or emotional component; the second, a conative component; and the third, a cognitive component. The model provides a useful guide for helping foreign firms to succeed in Russia, while also serving as a basis for further research in the field. Keywords

    Processos de democracia direta: sim ou não? Os argumentos clássicos à luz da teoria e da prática

    Get PDF
    Regularmente surgem controvérsias sobre os processos de democracia direta, dos quais os mecanismos mais frequentes são a iniciativa popular, o plebiscito e o referendo. Por um lado, há autores que defendem a posição de que essas instituições tornam o jogo político mais lento, caro, confuso e ilegítimo; outros defendem a posição contrária e argumentam que processos de democracia direta são fundamentais para os cidadãos e a qualidade da democracia. O presente estudo analisa esse tema em torno de sete questões, baseadas em considerações teóricas e pesquisas empíricas: 1. A questão entre o minimalismo e o maximalismo democrático; 2. A concorrência entre maioria e minoria; 3. A concorrência entre as instituições representativas e os processos de democracia direta; 4. A questão da competência dos cidadãos; 5. A questão dos efeitos colaterais dos processos de democracia direta; 6. A questão do tamanho do eleitorado; 7. A questão dos custos dos processos de democracia direta. As sete questões são analisadas a partir de uma revisão bibliográfica que considera tanto fontes nacionais como internacionais. O estudo mostra que os processos de democracia direta podem ser um complemento para as instituições representativas em um sistema democrático. O bom desempenho dos plebiscitos, referendos e iniciativas populares depende tanto da regulamentação destes como também do desempenho das outras instituições políticas e da situação socioeconômica de um país. O estudo permite ampliar e aprofundar o debate sobre processos de democracia direta no Brasil