Reference 1
Access control list: attributes on objects, stating which subjects has which permissions;
Capability: attributes on subjects, stating the subject has what permissions over certain objects;
If you could revise
the fundmental principles of
computer system design
to improve security...
... what would you change?