| 2022 | ESORICS | Administration of Machine Learning Based Access Control. | Mohammad Nur Nobi, Ram Krishnan, Yufei Huang, Ravi S. Sandhu |
| 2022 | SACMAT | BlueSky: Towards Convergence of Zero Trust Principles and Score-Based Authorization for IoT Enabled Smart Systems. | Safwa Ameer, Maanak Gupta, Smriti Bhatt, Ravi S. Sandhu |
| 2022 | SACMAT | BlueSky: Activity Control: A Vision for "Active" Security Models for Smart Collaborative Systems. | Tanjila Mawla, Maanak Gupta, Ravi S. Sandhu |
| 2021 | DBSEC | On Feasibility of Attribute-Aware Relationship-Based Access Control Policy Mining. | Shuvra Chakraborty, Ravi S. Sandhu |
| 2021 | DBSEC | Access Control Policy Generation from User Stories Using Machine Learning. | John Heaps, Ram Krishnan, Yufei Huang, Jianwei Niu, Ravi S. Sandhu |
| 2021 | DBSEC | DUCE: Distributed Usage Control Enforcement for Private Data Sharing in Internet of Things. | Na Shi, Bo Tang, Ravi S. Sandhu, Qi Li |
| 2021 | INFOCOM | Ruledger: Ensuring Execution Integrity in Trigger-Action IoT Platforms. | Jingwen Fan, Yi He, Bo Tang, Qi Li, Ravi S. Sandhu |
| 2021 | SACMAT | Towards Activity-Centric Access Control for Smart Collaborative Ecosystems. | Maanak Gupta, Ravi S. Sandhu |
| 2021 | SECRYPT | Access Control Convergence: Challenges and Opportunities. | Ravi S. Sandhu |
| 2021 | SERVICES | Secure V2V and V2I Communication in Intelligent Transportation using Cloudlets. | Maanak Gupta, James O. Benson, Farhan Patwa, Ravi S. Sandhu |
| 2020 | IRI | The EGRBAC Model for Smart Home IoT. | Safwa Ameer, James O. Benson, Ravi S. Sandhu |
| 2020 | SACMAT | ABAC-CC: Attribute-Based Access Control and Communication Control for Internet of Things. | Smriti Bhatt, Ravi S. Sandhu |
| 2020 | WISA | On the Cost-Effectiveness of TrustZone Defense on ARM Platform. | Naiwei Liu, Meng Yu, Wanyu Zang, Ravi S. Sandhu |
| 2019 | DBSEC | Online Malware Detection in Cloud Auto-scaling Systems Using Shallow Convolutional Neural Networks. | Mahmoud Abdelsalam, Ram Krishnan, Ravi S. Sandhu |
| 2019 | DBSEC | Refresh Instead of Revoke Enhances Safety and Availability: A Formal Analysis. | Mehrnoosh Shakarami, Ravi S. Sandhu |
| 2019 | IRI | On the Feasibility of Attribute-Based Access Control Policy Mining. | Shuvra Chakraborty, Ravi S. Sandhu, Ram Krishnan |
| 2019 | SACMAT | IoT Passport: A Blockchain-Based Trust Framework for Collaborative Internet-of-Things. | Bo Tang, Hongjuan Kang, Jingwen Fan, Qi Li, Ravi S. Sandhu |
| 2018 | SACMAT | Authorization Framework for Secure Cloud Assisted Connected Cars and Vehicular Internet of Things. | Maanak Gupta, Ravi S. Sandhu |
| 2017 | DBSEC | Object-Tagged RBAC Model for the Hadoop Ecosystem. | Maanak Gupta, Farhan Patwa, Ravi S. Sandhu |
| 2017 | IRI | Access Control Models for Virtual Object Communication in Cloud-Enabled IoT. | Asma Alshehri, Ravi S. Sandhu |
| 2017 | NSS | Safety of ABAC _\alpha Is Decidable. | Tahmina Ahmed, Ravi S. Sandhu |
| 2017 | NSS | Access Control Model for AWS Internet of Things. | Smriti Bhatt, Farhan Patwa, Ravi S. Sandhu |
| 2017 | SACMAT | Multi-Layer Authorization Framework for a Representative Hadoop Ecosystem Deployment. | Maanak Gupta, Farhan Patwa, James O. Benson, Ravi S. Sandhu |
| 2017 | SACMAT | POSTER: Access Control Model for the Hadoop Ecosystem. | Maanak Gupta, Farhan Patwa, Ravi S. Sandhu |
| 2016 | CCS | POSTER: Security Enhanced Administrative Role Based Access Control Models. | P. V. Rajkumar, Ravi S. Sandhu |
| 2016 | CCS | Community-Based Secure Information and Resource Sharing in Azure Cloud IaaS. | Yun Zhang, Farhan Patwa, Ravi S. Sandhu |
| 2016 | DBSEC | A Comparison of Logical-Formula and Enumerated Authorization Policy ABAC Models. | Prosunjit Biswas, Ravi S. Sandhu, Ram Krishnan |
| 2016 | DBSEC | Role-Centric Circle-of-Trust in Multi-tenant Cloud IaaS. | Navid Pustchi, Ravi S. Sandhu |
| 2016 | IRI | Object-to-Object Relationship-Based Access Control: Model and Multi-Cloud Demonstration (Invited Paper). | Tahmina Ahmed, Farhan Patwa, Ravi S. Sandhu |
| 2016 | NSS | On the Relationship Between Finite Domain ABAM and PreUCON \mathrm _A A. | Asma Alshehri, Ravi S. Sandhu |
| 2016 | NSS | An Attribute-Based Protection Model for JSON Documents. | Prosunjit Biswas, Ravi S. Sandhu, Ram Krishnan |
| 2016 | NSS | The \mathrm GURA_G GURA G Administrative Model for User and Group Attribute Assignment. | Maanak Gupta, Ravi S. Sandhu |
| 2016 | SACMAT | Extended ReBAC Administrative Models with Cascading Revocation and Provenance Support. | Yuan Cheng, Khalid Zaman Bijon, Ravi S. Sandhu |
| 2016 | SACMAT | Panel Security and Privacy in the Age of Internet of Things: Opportunities and Challenges. | Jianwei Niu, Yier Jin, Adam J. Lee, Ravi S. Sandhu, Wenyuan Xu, Xiaoguang Zhang |
| 2015 | CCS | Authorization Federation in IaaS Multi Cloud. | Navid Pustchi, Ram Krishnan, Ravi S. Sandhu |
| 2015 | CCS | Attribute-Based Access Control Models and Beyond. | Ravi S. Sandhu |
| 2015 | IRI | Hierarchical Secure Information and Resource Sharing in OpenStack Community Cloud. | Yun Zhang, Farhan Patwa, Ravi S. Sandhu, Bo Tang |
| 2015 | NSS | MT-ABAC: A Multi-Tenant Attribute-Based Access Control Model with Tenant Trust. | Navid Pustchi, Ravi S. Sandhu |
| 2015 | SACMAT | Mitigating Multi-Tenancy Risks in IaaS Cloud Through Constraints-Driven Virtual Resource Scheduling. | Khalid Zaman Bijon, Ram Krishnan, Ravi S. Sandhu |
| 2014 | CCS | Secure Information and Resource Sharing in Cloud Infrastructure as a Service. | Yun Zhang, Ram Krishnan, Ravi S. Sandhu |
| 2014 | DBSEC | Attribute-Aware Relationship-Based Access Control for Online Social Networks. | Yuan Cheng, Jaehong Park, Ravi S. Sandhu |
| 2014 | NSS | Adopting Provenance-Based Access Control in OpenStack Cloud IaaS. | Dang Nguyen, Jaehong Park, Ravi S. Sandhu |
| 2014 | NSS | A Formal Model for Isolation Management in Cloud Infrastructure-as-a-Service. | Khalid Zaman Bijon, Ram Krishnan, Ravi S. Sandhu |
| 2014 | NSS | Extending OpenStack Access Control with Domain Trust. | Bo Tang, Ravi S. Sandhu |
| 2013 | CCS | The science, engineering and business of cyber security. | Ravi S. Sandhu |
| 2013 | IRI | The future of access control: Attributes, automation and adaptation. | Ravi S. Sandhu |
| 2013 | IRI | Cross-tenant trust models in cloud computing. | Bo Tang, Ravi S. Sandhu |
| 2013 | PST | A provenance-based access control model for dynamic separation of duties. | Dang Nguyen, Jaehong Park, Ravi S. Sandhu |
| 2013 | PST | A multi-tenant RBAC model for collaborative cloud services. | Bo Tang, Qi Li, Ravi S. Sandhu |
| 2013 | WWW | Preserving user privacy from third-party applications in online social networks. | Yuan Cheng, Jaehong Park, Ravi S. Sandhu |
| 2012 | DBSEC | A User-to-User Relationship-Based Access Control Model for Online Social Networks. | Yuan Cheng, Jaehong Park, Ravi S. Sandhu |
| 2012 | DBSEC | A Unified Attribute-Based Access Control Model Covering DAC, MAC and RBAC. | Xin Jin, Ram Krishnan, Ravi S. Sandhu |
| 2012 | ICISS | Risk-Aware RBAC Sessions. | Khalid Zaman Bijon, Ram Krishnan, Ravi S. Sandhu |
| 2012 | IRI | Integrated provenance data for access control in group-centric collaboration. | Dang Nguyen, Jaehong Park, Ravi S. Sandhu |
| 2012 | PST | A provenance-based access control model. | Jaehong Park, Dang Nguyen, Ravi S. Sandhu |
| 2012 | SACMAT | The authorization leap from rights to attributes: maturation or chaos? | Ravi S. Sandhu |
| 2011 | ICISS | Authorization Policy Specification and Enforcement for Group-Centric Secure Information Sharing. | Ram Krishnan, Ravi S. Sandhu |
| 2010 | ACNS | Social Network-Based Botnet Command-and-Control: Emerging Threats and Countermeasures. | Erhan J. Kartaltepe, Jose Andre Morales, Shouhuai Xu, Ravi S. Sandhu |
| 2010 | CCS | Towards a discipline of mission-aware cloud computing. | Ravi S. Sandhu, Raj Boppana, Ram Krishnan, Jeff Reich, Todd Wolff, Josh Zachry |
| 2010 | SecureComm | Analyzing and Exploiting Network Behaviors of Malware. | Jose Andre Morales, Areej Al-Bataineh, Shouhuai Xu, Ravi S. Sandhu |
| 2009 | CCS | A conceptual framework for Group-Centric secure information sharing. | Ram Krishnan, Ravi S. Sandhu, Jianwei Niu, William H. Winsborough |
| 2009 | ISI | Assured Information Sharing Life Cycle. | Tim Finin, Anupam Joshi, Hillol Kargupta, Yelena Yesha, Joel Sachs, Elisa Bertino, Ninghui Li, Chris Clifton, Gene Spafford, Bhavani Thuraisingham, Murat Kantarcioglu, Alain Bensoussan, Nathan Berg, Latifur Khan, Jiawei Han, ChengXiang Zhai, Ravi S. Sandhu, Shouhuai Xu, Jim Massaro, Lada A. Adamic |
| 2009 | ISI | A Characterization of the problem of secure provenance management. | Shouhuai Xu, Qun Ni, Elisa Bertino, Ravi S. Sandhu |
| 2009 | SACMAT | Foundations for group-centric secure information sharing models. | Ram Krishnan, Ravi S. Sandhu, Jianwei Niu, William H. Winsborough |
| 2008 | CCS | Stale-safe security properties for group-based secure information sharing. | Ram Krishnan, Jianwei Niu, Ravi S. Sandhu, William H. Winsborough |
| 2008 | ISORC | QoS Aware Dependable Distributed Stream Processing. | Vana Kalogeraki, Dimitrios Gunopulos, Ravi S. Sandhu, Bhavani Thuraisingham |
| 2008 | SACMAT | R | Timothy W. Finin, Anupam Joshi, Lalana Kagal, Jianwei Niu, Ravi S. Sandhu, William H. Winsborough, Bhavani Thuraisingham |
| 2007 | CCS | SecureBus: towards application-transparent trusted computing with mandatory access control. | Xinwen Zhang, Michael J. Covington, Songqing Chen, Ravi S. Sandhu |
| 2007 | DBSEC | A Scalable and Secure Cryptographic Service. | Shouhuai Xu, Ravi S. Sandhu |
| 2007 | DBSEC | Towards a Times-Based Usage Control Model. | Baoxian Zhao, Ravi S. Sandhu, Xinwen Zhang, Xiaolin Qin |
| 2007 | SACMAT | PEI models towards scalable, usable and high-assurance information sharing. | Ram Krishnan, Ravi S. Sandhu, Kumar Ranganathan |
| 2007 | SACMAT | Towards a VMM-based usage control framework for OS kernel integrity protection. | Min Xu, Xuxian Jiang, Ravi S. Sandhu, Xinwen Zhang |
| 2006 | CCS | A general design towards secure ad-hoc collaboration. | Masayuki Nakae, Xinwen Zhang, Ravi S. Sandhu |
| 2006 | CCS | Secure information sharing enabled by Trusted Computing and PEI models. | Ravi S. Sandhu, Kumar Ranganathan, Xinwen Zhang |
| 2006 | CCS | Safety analysis of usage control authorization models. | Xinwen Zhang, Ravi S. Sandhu, Francesco Parisi-Presicce |
| 2006 | IWSEC | Towards Remote Policy Enforcement for Runtime Protection of Mobile Code Using Trusted Computing. | Xinwen Zhang, Francesco Parisi-Presicce, Ravi S. Sandhu |
| 2006 | SACMAT | A usage-based authorization framework for collaborative computing systems. | Xinwen Zhang, Masayuki Nakae, Michael J. Covington, Ravi S. Sandhu |
| 2005 | SACMAT | Peer-to-peer access control architecture using trusted computing technology. | Ravi S. Sandhu, Xinwen Zhang |
| 2004 | ACSAC | Mohammad A. Al-Kahtani, Ravi Sandhu. | Mohammad A. Al-Kahtani, Ravi S. Sandhu |
| 2004 | ACSAC | Role-Based Delegation Model/ Hierarchical Roles (RBDM1). | Ezedin Barka, Ravi S. Sandhu |
| 2004 | DBSEC | Attribute Mutability in Usage Control. | Jaehong Park, Xinwen Zhang, Ravi S. Sandhu |
| 2004 | PERCOM | Models, Protocols, and Architectures for Secure Pervasive Computing: Challenges and Research Directions. | Roshan K. Thomas, Ravi S. Sandhu |
| 2004 | SACMAT | Security for grid-based computing systems issues and challenges. | Elisa Bertino, Bruno Crispo, James Joshi, Wengliang (Kevin) Du, Ravi S. Sandhu |
| 2004 | SACMAT | A logical specification for usage control. | Xinwen Zhang, Jaehong Park, Francesco Parisi-Presicce, Ravi S. Sandhu |
| 2003 | DBSEC | Schema Based XML Security: RBAC Approach. | Xinwen Zhang, Jaehong Park, Ravi S. Sandhu |
| 2003 | SACMAT | Induced role hierarchies with attribute-based RBAC. | Mohammad A. Al-Kahtani, Ravi S. Sandhu |
| 2003 | SACMAT | PBDM: a flexible delegation model in RBAC. | Xinwen Zhang, Sejong Oh, Ravi S. Sandhu |
| 2002 | ACSAC | A Model for Attribute-Based User-Role Assignment. | Mohammad A. Al-Kahtani, Ravi S. Sandhu |
| 2002 | SAC | Authenticated multicast immune to denial-of-service attack. | Shouhuai Xu, Ravi S. Sandhu |
| 2002 | SACMAT | Making access control more usable. | Elisa Bertino, Trent Jaeger, Jonathan D. Moffett, Sylvia L. Osborn, Ravi S. Sandhu |
| 2002 | SACMAT | A model for role administration using organization structure. | Sejong Oh, Ravi S. Sandhu |
| 2002 | SACMAT | Towards usage control models: beyond traditional access control. | Jaehong Park, Ravi S. Sandhu |
| 2001 | ACSAC | Engineering of Role/Permission Assignments. | Pete Epstein, Ravi S. Sandhu |
| 2001 | DBSEC | Secure Role-Based Workflow Models. | Savith Kandala, Ravi S. Sandhu |
| 2001 | DBSEC | Role-based Access Control on the Web Using LDAP. | Joon S. Park, Gail-Joon Ahn, Ravi S. Sandhu |
| 2001 | SACMAT | Panel: The next generation of acess control models (panel session): do we need them and what should they be? | Ravi S. Sandhu, Elisa Bertino, Trent Jaeger, D. Richard Kuhn, Carl E. Landwehr |
| 2000 | ACSAC | Framework for Role-based Delegation Models. | Ezedin Barka, Ravi S. Sandhu |
| 2000 | ACSAC | Binding Identities and Attributes using Digitally Signed Certificates. | Joon S. Park, Ravi S. Sandhu |
| 2000 | ACSAC | Security Architectures for Controlled Digital Information Dissemination. | Jaehong Park, Ravi S. Sandhu, J. Schifalacqua |
| 1999 | ACSAC | Information Security Education for the Next Millennium: Building the Next Generation of Practitioners (Forum). | Ron Ross, Cynthia E. Irvine, Charles Reynolds, Ravi S. Sandhu, Blaine Burnham, Rayford B. Vaughn |
| 1999 | ACSAC | The ARBAC99 Model for Administration of Roles. | Ravi S. Sandhu, Qamar Munawer |
| 1999 | DBSEC | Extending The BFA Workflow Authorization Model to Express Weighted Voting. | Savith Kandala, Ravi S. Sandhu |
| 1999 | DBSEC | RBAC on the Web by Secure Cookies. | Joon S. Park, Ravi S. Sandhu, SreeLatha Ghanta |
| 1998 | ACSAC | Concentric Supervision of Security Applications: A New Security Management Paradigm. | P. C. Hyland, Ravi S. Sandhu |
| 1998 | ACSAC | The RRA97 Model for Role-Based Administration of Role Hierarchies. | Ravi S. Sandhu, Qamar Munawer |
| 1997 | ACSAC | Lattice Based Models for Controlled Sharing of Confidential Information in the Saudi Hajj System. | T. F. Himdi, Ravi S. Sandhu |
| 1997 | DBSEC | The URA97 Model for Role-Based User-Role Assignment. | Ravi S. Sandhu, Venkata Bhamidipati |
| 1997 | DBSEC | Task-Based Authorization Controls (TBAC): A Family of Models for Active and Enterprise-Oriented Autorization Management. | Roshan K. Thomas, Ravi S. Sandhu |
| 1997 | IM | SNMP-based Network Security Management. | P. C. Hyland, Ravi S. Sandhu |
| 1996 | ACISP | Access Control: The Neglected Frontier. | Ravi S. Sandhu |
| 1996 | DBSEC | Open Issues in Database Security. | Ravi S. Sandhu, J. Campbell |
| 1996 | DBSEC | Implementation Experiences and Prospects. | Ravi S. Sandhu, LouAnna Notargiacomo, D. Thomas, Jesse C. Worthington |
| 1996 | ESORICS | Role Hierarchies and Constraints for Lattice-Based Access Controls. | Ravi S. Sandhu |
| 1995 | DBSEC | Panel Discussion: Role-Based Access Control and Next-Generation Security Models. | Roshan K. Thomas, Elisa Bertino, Pierangela Samarati, Hans Hermann Brggemann, Bret Hartman, Ravi S. Sandhu, T. C. Ting |
| 1995 | SP | The semantics and expressive power of the MLR data model. | Fang Chen, Ravi S. Sandhu |
| 1994 | ACSAC | Role-based access control: a multi-dimensional view. | Ravi S. Sandhu, Edward J. Coyne, Hal L. Feinstein, Charles E. Youman |
| 1994 | ESORICS | On the Expressive Power of the Unary Transformation Model. | Ravi S. Sandhu, Srinivas Ganta |
| 1994 | ESORICS | Supporting Object-Based High-Assurance Write-up in Multilevel Databases for the Replicated Architecture. | Roshan K. Thomas, Ravi S. Sandhu |
| 1994 | SP | On the minimality of testing for rights in transformation models. | Ravi S. Sandhu, Srinivas Ganta |
| 1993 | ACSAC | Expressive power of the single-object typed access matrix model. | Ravi S. Sandhu, Srinivas Ganta |
| 1993 | DBSEC | On Five Definitions of Data Integrity. | Ravi S. Sandhu |
| 1993 | DBSEC | Towards a Unified Framework and Theory for Reasoning about Security and Correctness of Transactions in Multilevel databases. | Roshan K. Thomas, Ravi S. Sandhu |
| 1993 | NSPW | Towards a task-based paradigm for flexible and adaptable access control in distributed applications. | Roshan K. Thomas, Ravi S. Sandhu |
| 1993 | OOPSLA | Security for OODBMS (Or Systems) - Panel. | Ravi S. Sandhu |
| 1993 | OOPSLA | Concurrency, Synchronization, and Scheduling to Support High-Assurance Write-Up in Multilevel Object-Based Computing. | Roshan K. Thomas, Ravi S. Sandhu |
| 1993 | OOPSLA | Security for Object-Oriented Systems: An Editorial Overview. | Bhavani Thuraisingham, Ravi S. Sandhu, T. C. Ting |
| 1992 | ACSAC | Implementing transaction control expressions by checking for absence of access rights. | Paul Ammann, Ravi S. Sandhu |
| 1992 | DBSEC | Implementing the Message Filter Object-Oriented Security Model without Trusted Subjects. | Roshan K. Thomas, Ravi S. Sandhu |
| 1992 | ESORICS | Polyinstantation for Cover Stories. | Ravi S. Sandhu, Sushil Jajodia |
| 1992 | SP | The typed access matrix model. | Ravi S. Sandhu |
| 1992 | SP | Non-monotonic transformation of access rights. | Ravi S. Sandhu, Gurpreet S. Suri |
| 1991 | ACSAC | A distributed implementation of the extended schematic protection model. | Paul Ammann, Ravi S. Sandhu, Gurpreet S. Suri |
| 1991 | ACSAC | A single-level scheduler for the replicated architecture for multilevel-secure databases. | John P. McDermott, Sushil Jajodia, Ravi S. Sandhu |
| 1991 | DBSEC | Supporting Timing-Channel Free Computations in Multilevel Secure Object-Oriented Databases. | Ravi S. Sandhu, Roshan K. Thomas, Sushil Jajodia |
| 1991 | SIGMOD | Towards a Multilevel Secure Relational Data Model. | Sushil Jajodia, Ravi S. Sandhu |
| 1991 | SP | Safety Analysis for the Extended Schematic Protection Model. | Paul Ammann, Ravi S. Sandhu |
| 1991 | SP | A Novel Decomposition of Multilevel Relations into Single-Level Relations. | Sushil Jajodia, Ravi S. Sandhu |
| 1990 | ACSAC | Extending the creation operation in the Schematic Protection Model. | Paul Ammann, Ravi S. Sandhu |
| 1990 | ACSAC | Update semantics for multilevel relations. | Sushil Jajodia, Ravi S. Sandhu, Edgar H. Sibley |
| 1990 | DBSEC | Polyinstantiation Integrity in Multilevel Relations Revisited. | Sushil Jajodia, Ravi S. Sandhu |
| 1990 | DBSEC | Separation of Duties in Computerized Information Systems. | Ravi S. Sandhu |
| 1990 | SP | Polyinstantiation Integrity in Multilevel Relations. | Sushil Jajodia, Ravi S. Sandhu |
| 1989 | ACSAC | A perspective on integrity mechanisms. | Ravi S. Sandhu |
| 1989 | DBSEC | Mandatory Controls for Database Integrity. | Ravi S. Sandhu |
| 1989 | DBSEC | Discussion Summary. | Ravi S. Sandhu |
| 1989 | SP | Transformation of Access Rights. | Ravi S. Sandhu |
| 1986 | SP | Some Owner Based Schemes with Dynamic Groups in the Schematic Protection Model. | Ravi S. Sandhu, M. E. Share |