Technical Name | Sensitive Data Flow Monitoring System | ||
---|---|---|---|
Project Operator | 資通安全與研究教學中心 | ||
Project Host | 謝續平 | ||
Summary | SECol allows users to tag files or device nodes with sensitive data. At runtime, SECol intercepts the information flow related system calls via kprobe and inspect memory content via virtual machine introspection to track the propagation of sensitive data. |
||
Scientific Breakthrough | SECol uses an innovative hybrid architecture for tracking sensitive data. It tracks both the flow and the content of data. SECol uses the virtual machine introspection to snoop the memory content, which isolates the target system from the monitoring mechanism and is also able to bypass transport layer encryption. |
||
Industrial Applicability | Tracking the flow of sensitive data is very important for both government agencies and corporates. Following the implementation of the Personal Data Protection Act, |
||
Keyword | sensitive data privacy personal data information flow memory content system objects virtual machine introspection monitoring tracking information security |