Fwd: [security-lunch] July 23 | Alan Karp on "You've Got the Wrong Use Case"

22 views
Skip to first unread message

Alan Karp

unread,
Jul 21, 2025, 4:56:24 PMJul 21
to <friam@googlegroups.com>


--------------
Alan Karp


---------- Forwarded message ---------
From: Rumaisa Habib <rum...@stanford.edu>
Date: Mon, Jul 21, 2025 at 1:47 PM
Subject: [security-lunch] July 23 | Alan Karp on "You've Got the Wrong Use Case"
To: securit...@lists.stanford.edu <securit...@lists.stanford.edu>


Security Lunch ☀️ Ed. — Wednesday,  July 23rd, 2025, 12:00 pm @ CoDa E160

You've Got the Wrong Use Case
Alan Karp

Can't make it in person? Join us on zoom.
See our past & upcoming events on our website

Abstract: It's a good idea to start the design of a system by selecting a set of use cases that represent what you want the resulting system to do.  Clearly, the quality of your use cases will affect how suitable what you build is.

I've been lurking on a number of discussions of Identity and Access Management designs.  Some of them never saw the light of day.  Others shipped and ran into access management problems.  The reason for both kinds of failure is that the developers chose use cases that were too simple for how their systems are actually used.

In this talk, I'll walk through a number of examples and explain what these simple use cases miss.  I'll then present what I think is the simplest use case that covers all access management hazards. 


Bio: Alan Karp has a Ph.D. in Astronomy from the University of Maryland and was an assistant professor of physics at Dartmouth College, where he learned he couldn't write a decent grant proposal if his academic career depended on it, which it did. He then went over to the dark side, doing 15 to life at IBM and more than 20 years at HP Labs. Alan worked in a variety of fields, including processor architecture as one of the designers of the Itanium, game theory, work that explained a non-intuitive Nash equilibrium, and distributed systems, where his research was turned into an HP product that was later described as "web services before there were web services." His last several years at HP were spent building systems that were made easier to use by adding security. To learn about his other work, search for Cash-Karp Runga Kutta, Karp-Markstein division, the Karp-Flatt metric, and the Karp Challenge. After leaving HP he tried being retired but didn't like it, so he became Principled (not a typo) Architect at EARTH Computing, a startup bringing to market a new kind of datacenter network. When EARTH Computing folded, he decided to complete SitePassword, a different kind of password manager that started with a 2002 implementation. Alan received two IBM Technical Innovation Awards and is actually proud of a few of his 75+ patents.


                                                                    
Rumaisa Habib 🐸
CS PhD Student, Stanford University
_______________________________________________
security-lunch mailing list
securit...@lists.stanford.edu
https://mailman.stanford.edu/mailman/listinfo/security-lunch

Mark S. Miller

unread,
Jul 21, 2025, 5:10:14 PMJul 21
to fr...@googlegroups.com
Please record if possible!


--
You received this message because you are subscribed to the Google Groups "friam" group.
To unsubscribe from this group and stop receiving emails from it, send an email to friam+un...@googlegroups.com.
To view this discussion visit https://groups.google.com/d/msgid/friam/CANpA1Z1vFwPT_cCK2F-0xoL2twZbnkJdOCDRij_6tbP_t4Xs8A%40mail.gmail.com.


--
  Cheers,
  --MarkM

Alan Karp

unread,
Jul 21, 2025, 5:11:32 PMJul 21
to fr...@googlegroups.com
These talks are not recorded.

--------------
Alan Karp


๏̯͡๏ Jasvir Nagra

unread,
Jul 21, 2025, 6:14:06 PMJul 21
to fr...@googlegroups.com
You'll just have to give it again some place where it is Alan.

-- 
Jasvir Nagra


Mark S. Miller

unread,
Jul 21, 2025, 7:18:20 PMJul 21
to fr...@googlegroups.com

Alan Karp

unread,
Jul 21, 2025, 7:35:48 PMJul 21
to fr...@googlegroups.com
I can give it at Agoric.

--------------
Alan Karp


Matt Rice

unread,
Jul 21, 2025, 8:31:15 PMJul 21
to fr...@googlegroups.com
Don't know if it is possible to correct it, but there seems to be a
typo in the bio, misspelling "Runge" as "Runga", and weirdly the "g"
looks like a "q", in the font,
seems like it got transcribed phonetically?

Alan Karp

unread,
Jul 22, 2025, 12:12:44 AMJul 22
to fr...@googlegroups.com
Reply all
Reply to author
Forward
0 new messages