| 1987 | A Multilevel Relational Data Model. | Dorothy E. Denning, Teresa F. Lunt, Roger R. Schell, Mark R. Heckman, William R. Shockley |
| 1987 | Compartimented Mode Workstation: Results Through Prototyping. | Paul T. Cummings, D. A. Fullam, M. J. Goldstein, M. J. Gosselin, Jeffrey Picciotto, John P. L. Woodward, J. Wynn |
| 1987 | A Comparison of Commercial and Military Computer Security Policies. | David D. Clark, D. R. Wilson |
| 1987 | Toward Verified Execution Environments. | William R. Bevier, Warren A. Hunt Jr., William D. Young |
| 1987 | Multilevel Security for Knowledge-Based Systems. | Thomas A. Berson, Teresa F. Lunt |
| 1987 | A Basis for Secure Communication in Large Distributed Systems. | David P. Anderson, P. Venkat Rangan |
| 1987 | Checking Classification Constraints for Consistency and Completeness. | Selim G. Akl, Dorothy E. Denning |
| 1986 | A Secure Capability Computer System. | Simon R. Wiseman |
| 1986 | Extending Ina Jo with Temporal Logic. | Jeannette M. Wing, Mark R. Nixon |
| 1986 | Encrypted Database Design: Specialized Approaches. | Neal R. Wagner, Paul Putter, Marianne R. Cain |
| 1986 | Some Owner Based Schemes with Dynamic Groups in the Schematic Protection Model. | Ravi S. Sandhu, M. E. Share |
| 1986 | Security in KeyKOS™. | S. A. Rajunas, Norman Hardy, Allen C. Bomberger, William S. Frantz, Charles R. Landau |
| 1986 | Factors Affecting Distributed System Security. | Dan M. Nessett |
| 1986 | A More Efficient Cryptographic Matchmaking Protocol for Use in the Absence of a Continuously Available Third Party. | Catherine Meadows |
| 1986 | A Security Policy and Formal Top Level Specification for a Multi-Level Secure Local Area Network. | John McHugh, Andrew P. Moore |
| 1986 | Another Look at the Use of Noise Addition for Database Security. | Norman S. Matloff |
| 1986 | A Hierarchical Key Management Scheme for End-to-End Encryption in Internet Environments. | Wen-Pai Lu, Malur K. Sundareshan |
| 1986 | On Access Checking in Capability-Based Systems. | Richard Y. Kain, Carl E. Landwehr |
| 1986 | Muse : A Computer Assisted Verification System. | J. Daniel Halpern, Sam Owre, Norman Proctor, William F. Wilson |
| 1986 | Extending the Non-Interference Version of MLS for SAT. | J. Thomas Haigh, William D. Young |
| 1986 | An Experience Using Two Covert Channel Analysis Techniques on a Real System Design. | J. Thomas Haigh, Richard A. Kemmerer, John McHugh, William D. Young |
| 1986 | A New Security Testing Method and Its Application to the Secure Xenix Kernel. | Virgil D. Gligor, C. Sekar Chandersekaran, W. Cheng, Wen-Der Jiang, Abhai Johri, Gary L. Luckenbaugh, L. Edward Reich |
| 1986 | On the Design and the Implementation of Secure Xenix Workstations. | Virgil D. Gligor, E. L. Burch, C. Sekar Chandersekaran, Robert S. Chapman, Leslie J. Dotterer, Matthew S. Hecht, Wen-Der Jiang, Gary L. Luckenbaugh, N. Vasudevan |
| 1986 | Intrusion-Tolerance Using Fine-Grain Fragmentation-Scattering. | J.-M. Fray, Yves Deswarte, David Powell |
| 1986 | Building Reliable Secure Computing Systems out of Unreliable Insecure Components. | John E. Dobson, Brian Randell |