Abstract | ||
---|---|---|
This paper proposes a new static analysis for inference of explicit information flow. The analysis is context-sensitive, cubic, and works both on complete programs and software components. We perform experiments on several Java components which show that the analysis is precise and practical. Thus, the analysis can be incorporated in program understanding and verification tools and help verify security properties in a light-weight, practical manner. |
Year | DOI | Venue |
---|---|---|
2008 | 10.1145/1512475.1512486 | PASTE |
Keywords | Field | DocType |
software component,explicit information flow,complete program,java component,program understanding,verification tool,security property,new static analysis,practical manner,flow analysis,static analysis,information flow | Information flow (information theory),Data mining,Shape analysis (program analysis),Computer science,Inference,Static analysis,Theoretical computer science,Security properties,Control flow analysis,Component-based software engineering,Java | Conference |
Citations | PageRank | References |
9 | 0.51 | 34 |
Authors | ||
2 |
Name | Order | Citations | PageRank |
---|---|---|---|
Yin Liu | 1 | 174 | 9.07 |
Ana Milanova | 2 | 663 | 37.98 |