A framework for execution of secure mobile code based on static analysis

Detalles Bibliográficos
Autor Principal: Nordio, Martín
Otros autores o Colaboradores: Bavera, Francisco, Aguirre, Jorge Alberto, Medel, Ricardo H., Baum, Gabriel Alfredo
Formato: Capítulo de libro
Lengua:inglés
Series:^p Datos electrónicos (1 archivo : 355 KB)
Temas:
Acceso en línea:ieeexplore.ieee.org/ielx5/9447/29997/01372105.pdf?arnumber1372105
Consultar en el Cátalogo
Resumen:Since its conception, Proof-Carrying Code (PCC) woke up the interest of the research community and several methods based on this technique were developed. This technique guarantees that untrusted programs run safely in a host machine. In a PCC framework, the code producer equips the produced code with a formal proof establishing that the code satisfy the consumer’s security policies. So, the code consumer only needs to verify such proof before the execution of themobile code.On the other hand, static analysis is a technique useful for the production of the information required to construct the mentioned proof. Based on these two techniques, PCC and static analysis, we developed a framework that guarantees the safe execution of mobile code. This framework uses a high-level intermediate language to verify the security of the code. Acontrol flow graph or an abstract syntax tree with type annotations could be used. Such intermediate representations of the code enable us to use static analysis techniques to generate and verify the type information needed.Moreover, we implemented a prototype as a proof of concept for our framework. -- Keywords: Mobile Code, Proof-Carrying Code, Certifying Compilation, Security Properties, Automated Program Verification.
Notas:Formato de archivo: PDF. -- Este documento es producción intelectual de la Facultad de Informática-UNLP (Colección BIPA / Biblioteca.) -- Disponible también en línea (Cons. 06/03/2009)

MARC

LEADER 00000naa a2200000 a 4500
003 AR-LpUFIB
005 20250423183002.0
008 230201s2004 xx o 000 0 eng d
024 8 |a DIF-M2610  |b 2703  |z DIF002514 
040 |a AR-LpUFIB  |b spa  |c AR-LpUFIB 
100 1 |a Nordio, Martín  |9 46407 
245 1 0 |a A framework for execution of secure mobile code based on static analysis 
490 0 |a ^p Datos electrónicos (1 archivo : 355 KB) 
500 |a Formato de archivo: PDF. -- Este documento es producción intelectual de la Facultad de Informática-UNLP (Colección BIPA / Biblioteca.) -- Disponible también en línea (Cons. 06/03/2009) 
520 |a Since its conception, Proof-Carrying Code (PCC) woke up the interest of the research community and several methods based on this technique were developed. This technique guarantees that untrusted programs run safely in a host machine. In a PCC framework, the code producer equips the produced code with a formal proof establishing that the code satisfy the consumer’s security policies. So, the code consumer only needs to verify such proof before the execution of themobile code.On the other hand, static analysis is a technique useful for the production of the information required to construct the mentioned proof. Based on these two techniques, PCC and static analysis, we developed a framework that guarantees the safe execution of mobile code. This framework uses a high-level intermediate language to verify the security of the code. Acontrol flow graph or an abstract syntax tree with type annotations could be used. Such intermediate representations of the code enable us to use static analysis techniques to generate and verify the type information needed.Moreover, we implemented a prototype as a proof of concept for our framework. -- Keywords: Mobile Code, Proof-Carrying Code, Certifying Compilation, Security Properties, Automated Program Verification. 
534 |a XXIV International Conference of the Chilean Computer Science Society, 56-66, IEEE-CS PRESS, November 2004. 
650 4 |a PRUEBA Y DEPURACIÓN DE SOFTWARE  |9 43054 
650 4 |a CORRECCIÓN DE PROGRAMAS  |9 42914 
650 4 |a CODIFICACIÓN DE PROGRAMAS  |9 43219 
700 1 |a Bavera, Francisco  |9 46408 
700 1 |a Aguirre, Jorge Alberto  |9 42861 
700 1 |a Medel, Ricardo H.  |9 46174 
700 1 |a Baum, Gabriel Alfredo  |9 43642 
856 4 0 |u ieeexplore.ieee.org/ielx5/9447/29997/01372105.pdf?arnumber1372105 
942 |c CP 
952 |0 0  |1 0  |4 0  |6 A0109  |7 3  |8 BD  |9 76956  |a DIF  |b DIF  |d 2025-03-11  |l 0  |o A0109  |r 2025-03-11 17:02:46  |u http://catalogo.info.unlp.edu.ar/meran/getDocument.pl?id=113  |w 2025-03-11  |y CP 
999 |c 52393  |d 52393