课题基金 / 基金详情

CT-T: Collaborative Research: Complex, High-level, Integrated Properties for Security

CT-T: Collaborative Research: Complex, High-level, Integrated Properties for Security
CT-T:协作研究:复杂、高级、集成的安全属性
批准号:
0715650
负责人:
Jeffrey Foster
金额:
$5.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2007
资助国家:
美国
项目状态:
已结题
起止时间:
2007-10-01 至 2009-03-31

项目摘要

项目成果

Jeffrey Foster的其他基金

相似基金

相关文献

中文摘要
翻译
在过去的十年中,我们在自动分析安全属性的源代码方面取得了实质性的进展。这些进步正在转化为实践,并对软件安全产生广泛的影响。然而,由于存在许多我们不知道如何分析的安全属性,这项工作的成功受到了部分限制。这个项目试图采取几个最初的步骤来扩展可以在大型软件系统上检查的安全属性的范围和范围。这项研究涉及三个方面。首先,我们将研究编程语言的设计如何支持安全编程实践。其次,我们将学习分析内存安全性的技术,这是一个复杂但基本的安全属性,令人惊讶的是,今天仍然不能静态检查。第三,我们将研究如何检查网络软件是否与标准委员会对网络协议的描述中隐含的规范一致。集成在一起,这三个方向将允许我们提供从低到高级别的安全属性的端到端保证。这个项目的目标是开始开发用于改进软件安全性的下一代技术的工作。
英文摘要
The last ten years have seen substantial progress in our ability to automatically analyze source code for security properties. These advances are transitioning into practice and making a broad impact on software security. However, the success of this work has been partially limited by the fact that there are many security properties that we do not know how to analyze.This project seeks to take several initial steps towards extending the range and scope of security properties that can be checked on large software systems. The research involves three tracks. First, we will investigate how the design of programming languages can support secure programming practices. Second, we will study techniques for analyzing memory safety, a a complex yet fundamental security property that, surprisingly, is still not statically checkable today. Third, we will study how to check that networking software is consistent with the specifications implied in standards committees' descriptions of network protocols. Integrated together, these three directions will allow us to provide end-to-end guarantees of security properties that span from low to high level. The goal of this project is to begin the work of developing a future generation of techniques for improving software security.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
QCIS-FF: Quantum Computing & Information Science Faculty Fellow at Tufts University
  • 批准号:
    2013062
  • 项目类别:
    Continuing Grant
  • 资助金额:
    $75.0万
  • 财政年份:
    2021
  • 负责人:
    Jeffrey Foster
  • 依托单位:
FMitF: Track II: Transitioning Ruby Types to Practice
  • 批准号:
    1918233
  • 项目类别:
    Standard Grant
  • 资助金额:
    $10.0万
  • 财政年份:
    2019
  • 负责人:
    Jeffrey Foster
  • 依托单位:
SHF: Small: Specifying, Checking, and Analyzing Applications Built with Dynamic Language Frameworks
  • 批准号:
    1319666
  • 项目类别:
    Standard Grant
  • 资助金额:
    $41.27万
  • 财政年份:
    2013
  • 负责人:
    Jeffrey Foster
  • 依托单位:
Collaborative Research: Expeditions in Computer Augmented Program Engineering (ExCAPE): Harnessing Synthesis for Software Design
  • 批准号:
    1139021
  • 项目类别:
    Continuing Grant
  • 资助金额:
    $50.0万
  • 财政年份:
    2012
  • 负责人:
    Jeffrey Foster
  • 依托单位:
海外基金