分享给好友:
Information Flow Security in Tree-manipulating Processes: Verifying Safety Hyperproperties Using Abstract Interpretation and Model Checking Máté Kovács
Information Flow Security in Tree-manipulating Processes: Verifying Safety Hyperproperties Using Abstract Interpretation and Model Checking
Máté Kovács
Enterprise workflows and web services may be highly security critical, because they may be in control of important processes of organizations, while communicating with external partners over the network. On the other hand, these technologies frequently represent data as XML documents, which can be modeled as trees. Therefore, this work introduces general methods to enforce and verify information flow properties of computer programs, which are later specialized to tree-manipulating processes. First, the class of programs are considered that implement transformations from initial states into final states. A runtime monitor and a static analysis are introduced for the enforcement and verification of the information flow properties of these programs. Later, a model checking approach is presented, in order to verify systems that exchange a potentially unbounded sequence of data values with their environment during an execution. In all of the methods discussed abstraction techniques are applied to overapproximate the sets of positions of secrets in the tree-shaped data-values before they are released to the environment.
| 介质类型 | 图书 Paperback Book (平装胶订图书) |
| 已发行 | 2014年7月23日 |
| ISBN13 | 9783838138800 |
| 出版商 | Südwestdeutscher Verlag für Hochschulsch |
| 页数 | 152 |
| 商品尺寸 | 152 × 229 × 9 mm · 244 g |
| 语言 | 德语 |