Data protection and security on the web, ESWC2014 Panel

18
DaTa PROTECTION ON THE WEB fabien, gandon http://fabien.info @fabien_gandon

description

Slides for the ESWC 2014 panel on data protection and security on the Web

Transcript of Data protection and security on the web, ESWC2014 Panel

Page 1: Data protection and security on the web, ESWC2014 Panel

DaTaPROTECTIONON THE WEB

fabien, gandon

http://fabien.info

@fabien_gandon

Page 2: Data protection and security on the web, ESWC2014 Panel

DOUBLE EDGED SEMANTICS IN SECURITY

سيف ذو حدين

expressive policies

factorized rules

extensible vocs

robust conditions

Page 3: Data protection and security on the web, ESWC2014 Panel

DOUBLE EDGED SEMANTICS IN SECURITY

سيف ذو حدين

expressive policies

factorized rules

extensible vocs

robust conditionssemantic divide

de-anonymizing

unwanted conclusions

additional complexity

completeness & trust

Page 4: Data protection and security on the web, ESWC2014 Panel

security on every floor

Page 5: Data protection and security on the web, ESWC2014 Panel

security on every floor

standard frameworks & models

Page 6: Data protection and security on the web, ESWC2014 Panel

security on every floor

standard frameworks & models

certified code, protocols…

Page 7: Data protection and security on the web, ESWC2014 Panel

security on every floor

standard frameworks & models

certified code, protocols…

infrastructures,third parties

Page 8: Data protection and security on the web, ESWC2014 Panel

security on every floor

standard frameworks & models

basic security APIs

certified code, protocols…

infrastructures,third parties

Page 9: Data protection and security on the web, ESWC2014 Panel

security on every floor

programming the semantic web

standard frameworks & models

basic security APIs

certified code, protocols…

infrastructures,third parties

Page 10: Data protection and security on the web, ESWC2014 Panel

more than technical

Page 11: Data protection and security on the web, ESWC2014 Panel

more than technical

awareness

Page 12: Data protection and security on the web, ESWC2014 Panel

more than technical

awareness

social engineering

Page 13: Data protection and security on the web, ESWC2014 Panel

more than technical

awareness

sustained attention

social engineering

Page 14: Data protection and security on the web, ESWC2014 Panel

more than technical

awareness

sustained attention

context changes

social engineering

Page 15: Data protection and security on the web, ESWC2014 Panel

more than technical

awareness

sustained attention

context changes

preferences

social engineering

Page 16: Data protection and security on the web, ESWC2014 Panel

more than technical

awareness

sustained attention

context changes

ergonomics

preferences

social engineering

Page 17: Data protection and security on the web, ESWC2014 Panel

my triple statement…(semantics are a double-edged weapon for security,

deployment requires security on every floor,

security is much more than a technical problem)

fabien, gandon, http://fabien.info @fabien_gandon

Page 18: Data protection and security on the web, ESWC2014 Panel

my triple statement…(semantics are a double-edged weapon for security,

deployment requires security on every floor,

security is much more than a technical problem)

beyond prevention:monitoring, tracing,detecting, chasing…

fabien, gandon, http://fabien.info @fabien_gandon

but there will be leaks