Sökning: onr:"swepub:oai:research.chalmers.se:97263504-86c1-4ac8-8867-5bfebe04528b" >
A Principled Approa...
A Principled Approach to Tracking Information Flow in the Presence of Libraries
-
- Hedin, Daniel, 1978 (författare)
- Mälardalens högskola,Inbyggda system,Chalmers University of Technology, Gothenburg, Sweden
-
- Sjösten, Alexander, 1988 (författare)
- Chalmers tekniska högskola,Chalmers University of Technology,Chalmers University of Technology, Gothenburg, Sweden
-
- Piessens, Frank (författare)
- Katholieke Universiteit Leuven,imec-DistriNet, KU Leuven, Leuven, Belgium
-
visa fler...
-
- Sabelfeld, Andrei, 1974 (författare)
- Chalmers tekniska högskola,Chalmers University of Technology,Chalmers University of Technology, Gothenburg, Sweden
-
visa färre...
-
(creator_code:org_t)
- ISBN 9783662544549
- 2017-03-28
- 2017
- Engelska.
-
Serie: Lecture Notes in Computer Science, 0302-9743 ; 10204 LNCS
-
Ingår i: Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics). - Berlin, Heidelberg : Springer Berlin Heidelberg. - 1611-3349 .- 0302-9743. - 9783662544549 ; 10204, s. 49-70
- Relaterad länk:
-
http://dx.doi.org/10...
-
visa fler...
-
https://link.springe...
-
https://doi.org/10.1...
-
https://research.cha...
-
https://urn.kb.se/re...
-
visa färre...
Abstract
Ämnesord
Stäng
- There has been encouraging progress on information flow control for programs in increasingly complex programming languages, tracking the propagation of information from input sources to output sinks. Yet, programs are typically deployed in an environment with rich APIs and powerful libraries, posing challenges for information flow control when the code for these APIs and libraries is either unavailable or written in a different language.This paper presents a principled approach to tracking information flow in the presence of libraries. With the goal to strike the balance between security and precision, we present a framework that explores the middle ground between the “shallow”, signature-based modeling of libraries and the “deep”, stateful approach, where library models need to be supplied manually. We formalize our approach for a core language, extend it with lists and higher-order functions, and establish soundness results with respect to the security condition of noninterference.
Ämnesord
- NATURVETENSKAP -- Data- och informationsvetenskap (hsv//swe)
- NATURAL SCIENCES -- Computer and Information Sciences (hsv//eng)
- NATURVETENSKAP -- Data- och informationsvetenskap -- Datavetenskap (hsv//swe)
- NATURAL SCIENCES -- Computer and Information Sciences -- Computer Sciences (hsv//eng)
Nyckelord
- information flow
- language-based security
- noninterference
Publikations- och innehållstyp
- kon (ämneskategori)
- ref (ämneskategori)
Hitta via bibliotek
Till lärosätets databas