Abstract | ||
---|---|---|
In this work, we extend language-based information-flow security analysis to the case of database applications embedding query languages. The analysis is performed by (i) computing an overapproximation of variables' dependences, in the form of propositional formula, occurred up to each program point, (ii) checking the satisfiability on assigning truth values to variables, (iii) analyzing the application over a numerical abstract domain, and finally, (iv) enhancing the analysis using the reduced product of the propositional formulae domain and the numerical abstract domain. |
Year | DOI | Venue |
---|---|---|
2014 | 10.1145/2554850.2554862 | SAC |
Keywords | DocType | Citations |
abstract interpretation,security,information flow analysis,query languages,general,languages,static analysis,databases,semantics of programming languages | Conference | 5 |
PageRank | References | Authors |
0.45 | 17 | 3 |
Name | Order | Citations | PageRank |
---|---|---|---|
Raju Halder | 1 | 84 | 12.67 |
Matteo Zanioli | 2 | 52 | 2.90 |
Agostino Cortesi | 3 | 791 | 66.19 |