课题基金 / 基金详情

Developing Systems with Secure Information Flow

Developing Systems with Secure Information Flow
开发具有安全信息流的系统
批准号:
183481129
负责人:
Professor Dr. Wolfgang Reif
金额:
$0.0万
依托单位国家:
德国
项目类别:
Priority Programmes
财政年份:
2010
资助国家:
德国
项目状态:
已结题
起止时间:
2009-12-31 至 2017-12-31

项目摘要

项目成果

Professor Dr. Wolfgang Reif的其他基金

相似基金

相关文献

中文摘要
翻译
越来越多的私人数据存储在移动设备上,保护这些信息免受未经授权的访问变得越来越重要。这不仅涉及防止外部攻击者,还涉及防止应用程序和设备之间以及互联网之间的意外信息流。在本项目中,我们将重点关注第二个方面,同时也考虑外部攻击者。我们开发了一种新的方法,将正式验证的信息流控制(IFC)属性和基于语言的IFC与基于模型驱动开发的软件工程方法集成在一起。该方法从一个UML模型开始,该模型增强了特定于应用程序的信息流属性规范(例如,信用卡信息仅在确认预订后发送),这些属性可能由用户配置。模型到模型的转换生成特定于平台的Java代码以及正式的规范。为了验证程序的信息流特性,我们使用了基于语言的IFC和抽象解释的自动化技术。此分析的结果可以用作建立特定于应用程序的安全属性的关键定理。重点是Android应用和Java网络服务。
英文摘要
More and more private data is stored on mobile devices, and protection of this information against unauthorized access becomes more and more important. This concerns protection against outside attackers, but also protection against unintended information flows between apps and devices, and to the Internet. In this project we focus on the second aspect while also considering an external attacker. We develop a new approach that integrates formally verified information flow control (IFC) properties and language based IFC with a software engineering approach based on model-driven development. The approach starts with a UML model enhanced with application-specific specifications of information flow properties (e.g. credit card information is sent only after confirming a booking) that may be configured by the user. Model-to-model transformations generate platform-specific Java code as well as a formal specification. To verify information flow properties of programs, we use automatic techniques based on language-based IFC and abstract interpretation. The results of this analysis can be used as key theorems to establish application-specific security properties. The focus is on Android apps and Java web services.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
COMBO – Combining Planning, Self-Organization and Reconfiguration in Robot Ensembles for ScORe Missions
TeamBotS - A tool-supported methodology for developing software for dynamic teams of robots
Flashix II: Incremental verification of non-local refinements
Verifikation Lock-freier Algorithmen
国内基金
海外基金
Graphon mean field games with partial observation and application to failure detection in distributed systems
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    --
  • 批准年份:
    2025
  • 负责人:
    MATHIEULOUROCHLAURIERE
  • 依托单位:
EstimatingLarge Demand Systems with MachineLearning Techniques
  • 批准号:
    --
  • 项目类别:
    外国学者研究基金
  • 资助金额:
    --
  • 批准年份:
    2024
  • 负责人:
    IoshuaAlex
  • 依托单位:
基于“阳化气、阴成形”理论探讨龟鹿二仙胶调控 HIF-1α/Systems Xc-通路抑制铁死亡治疗少弱精子症的作用机理
  • 批准号:
  • 项目类别:
    省市级项目
  • 资助金额:
    15.0万元
  • 批准年份:
    2024
  • 负责人:
    丁劲
  • 依托单位:
Understanding complicated gravitational physics by simple two-shell systems
  • 批准号:
    12005059
  • 项目类别:
    青年科学基金项目
  • 资助金额:
    24.0万元
  • 批准年份:
    2020
  • 负责人:
    国分隆文
  • 依托单位: