SwePub
Sök i LIBRIS databas

  Extended search

WFRF:(Bastys Iulia 1986)
 

Search: WFRF:(Bastys Iulia 1986) > Automatic Annotatio...

  • Bastys, Iulia,1986Chalmers tekniska högskola,Chalmers University of Technology (author)

Automatic Annotation of Confidential Data in Java Code

  • Article/chapterEnglish2022

Publisher, publication year, extent ...

  • 2022-06-15
  • Cham :Springer International Publishing,2022

Numbers

  • LIBRIS-ID:oai:research.chalmers.se:290e22d4-f96a-47d0-a1e8-9f2ba9d1dc23
  • https://doi.org/10.1007/978-3-031-08147-7_10DOI
  • https://research.chalmers.se/publication/528074URI

Supplementary language notes

  • Language:English
  • Summary in:English

Part of subdatabase

Classification

  • Subject category:kon swepub-publicationtype
  • Subject category:ref swepub-contenttype

Notes

  • The problem of confidential information leak can be addressed by using automatic tools that take a set of annotated inputs (the source ) and track their flow to public sinks . Unfortunately, manually annotating the code with labels specifying the secret sources is one of the main obstacles in the adoption of such trackers. In this work, we present an approach for the automatic generation of labels for confidential data in Java programs. Our solution is based on a graph-based representation of Java methods: starting from a minimal set of known API calls, it propagates the labels both intra- and inter-procedurally until a fix-point is reached. In our evaluation, we encode our synthesis and propagation algorithm in Datalog and assess the accuracy of our technique on seven previously annotated internal code bases, where we can reconstruct 75% of the preexisting manual annotations. In addition to this single data point, we also perform an assessment using samples from the SecuriBench-micro benchmark, and we provide additional sample programs that demonstrate the capabilities and the limitations of our approach.

Subject headings and genre

Added entries (persons, corporate bodies, meetings, titles ...)

  • Bolignano, PauligneAmazon (author)
  • Raimondi, FrancoAmazon,Middlesex University (author)
  • Schoepe, Daniel,1989Amazon(Swepub:cth)schoepe (author)
  • Chalmers tekniska högskolaAmazon (creator_code:org_t)

Related titles

  • In:Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)Cham : Springer International Publishing13291, s. 146-1611611-33490302-9743

Internet link

Find in a library

To the university's database

Search outside SwePub

Kungliga biblioteket hanterar dina personuppgifter i enlighet med EU:s dataskyddsförordning (2018), GDPR. Läs mer om hur det funkar här.
Så här hanterar KB dina uppgifter vid användning av denna tjänst.

 
pil uppåt Close

Copy and save the link in order to return to this view