Abstract
We analyze dynamic information-flow control for imperative languages in terms of functional computation. Specifically, we translate an imperative language to a functional language, thus accounting for the main difficulties of information-flow control in the imperative language.
Access this chapter
Tax calculation will be finalised at checkout
Purchases are for personal use only
Preview
Unable to display preview. Download preview PDF.
Similar content being viewed by others
References
Abadi, M., Banerjee, A., Heintze, N., Riecke, J.G.: A core calculus of dependency. In: Symposium on Principles of Programming Languages (1999)
Abadi, M., Lampson, B.W., Lévy, J.-J.: Analysis and caching of dependencies. In: International Conference on Functional Programming (1996)
Austin, T.H., Flanagan, C.: Efficient purely-dynamic information flow analysis. In: Workshop on Programming Languages and Analysis for Security (2009)
Austin, T.H., Flanagan, C., Abadi, M.: A functional view of imperative information flow, extended version. Technical Report UCSC-SOE-12-15, The University of California at Santa Cruz (2012)
Chugh, R., Meister, J.A., Jhala, R., Lerner, S.: Staged information flow for JavaScript. In: Conference on Programming Language Design and Implementation (2009)
Denning, D.E.: A lattice model of secure information flow. Communications of the ACM 19(5), 236–243 (1976)
Denning, D.E., Denning, P.J.: Certification of programs for secure information flow. Communications of the ACM 20(7), 504–513 (1977)
Dhawan, M., Ganapathy, V.: Analyzing information flow in JavaScript-based browser extensions. In: Annual Computer Security Applications Conference (2009)
Fenton, J.S.: Memoryless subsystems. The Computer Journal 17(2), 143–147 (1974)
FlowCaml homepage, http://pauillac.inria.fr/~simonet/soft/flowcaml/ (accessed May 2010)
Le Guernic, G., Banerjee, A., Jensen, T., Schmidt, D.A.: Automata-Based Confidentiality Monitoring. In: Okada, M., Satoh, I. (eds.) ASIAN 2006. LNCS, vol. 4435, pp. 75–89. Springer, Heidelberg (2008)
Hedin, D., Sabelfeld, A.: Information-flow security for a core of JavaScript. In: Computer Security Foundations Symposium (2012)
Heintze, N., Riecke, J.G.: The SLam calculus: Programming with secrecy and integrity. In: Symposium on Principles of Programming Languages (1998)
Jif homepage (2010), http://www.cs.cornell.edu/jif/ (accessed October 2010)
Krohn, M.N., Efstathopoulos, P., Frey, C., Frans Kaashoek, M., Kohler, E., Mazières, D., Morris, R., Osborne, M., Vandebogart, S., Ziegler, D.: Make least privilege a right (not a privilege). In: Workshop on Hot Topics in Operating Systems (2005)
Myers, A.C.: JFlow: Practical mostly-static information flow control. In: Symposium on Principles of Programming Languages (1999)
Pottier, F., Simonet, V.: Information flow inference for ML. Transactions on Programming Languages and Systems 25(1), 117–158 (2003)
Sabelfeld, A., Myers, A.C.: Language-based information-flow security. Journal on Selected Areas in Communications 21(1), 5–19 (2003)
Shroff, P., Smith, S.F., Thober, M.: Dynamic dependency monitoring to secure information flow. In: Computer Security Foundations Symposium (2007)
Stefan, D., Russo, A., Mitchell, J.C., Mazières, D.: Flexible dynamic information flow control in Haskell. In: Symposium on Haskell (2011)
Vogt, P., Nentwich, F., Jovanovic, N., Kirda, E., Krügel, C., Vigna, G.: Cross-site scripting prevention with dynamic data tainting and static analysis (2007)
Volpano, D., Irvine, C., Smith, G.: A sound type system for secure flow analysis. Journal of Computer Security 4(2-3), 167–187 (1996)
Zdancewic, S.A.: Programming languages for information security. PhD thesis, Cornell University (2002)
Zeldovich, N., Boyd-Wickizer, S., Kohler, E., Mazières, D.: Making information flow explicit in HiStar. Communications of the ACM 54(11), 93–101 (2011)
Author information
Authors and Affiliations
Editor information
Editors and Affiliations
Rights and permissions
Copyright information
© 2012 Springer-Verlag Berlin Heidelberg
About this paper
Cite this paper
Austin, T.H., Flanagan, C., Abadi, M. (2012). A Functional View of Imperative Information Flow. In: Jhala, R., Igarashi, A. (eds) Programming Languages and Systems. APLAS 2012. Lecture Notes in Computer Science, vol 7705. Springer, Berlin, Heidelberg. https://doi.org/10.1007/978-3-642-35182-2_4
Download citation
DOI: https://doi.org/10.1007/978-3-642-35182-2_4
Publisher Name: Springer, Berlin, Heidelberg
Print ISBN: 978-3-642-35181-5
Online ISBN: 978-3-642-35182-2
eBook Packages: Computer ScienceComputer Science (R0)