TWC: Medium: Collaborative: Flexible and Practical Information Flow Assurance for Mobile Apps
TWC: Medium: Collaborative: Flexible and Practical Information Flow Assurance for Mobile Apps
批准号:
1228695
负责人:
Gary Leavens
金额:
$32.57万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2012
资助国家:
美国
项目状态:
已结题
起止时间:
2012-08-01 至 2017-12-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
This project is developing tools and techniques for cost-effective evaluation of the trustworthiness of mobile applications (apps). The work focuses on enterprise scenarios, in which personnel at a business or government agency use mission-related apps and access enterprise networks.In such scenarios there are incentives and resources for much more substantive evaluations and controls on information flow than are currently found in commodity app marketplaces. The project aims to advance the science needed for static techniques to be usable by professional development and evaluation teams and useful for achieving dramatically improved assurance. The project's goals are to: (a) find flexible and expressive ways to specify information flow requirements for apps, (b) find effective ways to specify what is assumed about the Android platform, and (c) find practical static analysis and verification techniques to check security of apps with respect to given policies and the platform. Results include specification techniques and theory - models and algorithms. These are applied in case studies with prototype tools that the project develops, to evaluate how well the goals are achieved.The project's techniques can be deployed by certification organizations to provide scientifically sound techniques for assurance, thusenabling the full benefits of highly-integrated mobile software in mission-critical situations. Software designers will benefit from being able to precisely specify end-to-end requirements as well as component interfaces. Software developers will benefit from reliable means to detect design flaws and bugs, malware in third-party software, and unintended functionality that exposes vulnerabilities. Beyond the specific target of mobile software, the techniques will be of use in other settings, especially web applications, where it is crucial to reason about interfaces between mutually untrusting parties making heavy use of callbacks. The project could help improve security in government agencies and private sector, indirectly benefitting national security and the general population.
期刊论文(0)
专著(0)
科研奖励(0)
会议论文
SHF: ESEC/FSE 2018 Doctoral Consortium, Mentorship, and Conference Travel Support
-
批准号:1837807
-
项目类别:Standard Grant
-
资助金额:$3.4万
-
财政年份:2018
-
负责人:Gary Leavens
-
依托单位:
SHF:Large:Collaborative Research: Inferring Software Specifications from Open Source Repositories by Leveraging Data and Collective Community Expertise
-
批准号:1518789
-
项目类别:Standard Grant
-
资助金额:$32.0万
-
财政年份:2015
-
负责人:Gary Leavens
-
依托单位:
SHF: Small: Collaborative Research: Balancing Expressiveness and Modular Reasoning for Aspect-Oriented Programming
-
批准号:1017262
-
项目类别:Continuing Grant
-
资助金额:$24.1万
-
财政年份:2010
-
负责人:Gary Leavens
-
依托单位:
SHF: Small: Collaborative Research: Specification Language Foundations for Modular Reasoning Methodologies
-
批准号:0916715
-
项目类别:Standard Grant
-
资助金额:$25.0万
-
财政年份:2009
-
负责人:Gary Leavens
-
依托单位:
SHF: Small: Collaborative Research: Specification and Verification of Safety Critical Java
-
批准号:0916350
-
项目类别:Standard Grant
-
资助金额:$25.0万
-
财政年份:2009
-
负责人:Gary Leavens
-
依托单位:
Collaborative Research: CRI: CRD: A JML Community Infrastructure -- Revitalizing Tools and Documentation to Aid Formal Methods Research
-
批准号:0709217
-
项目类别:Continuing Grant
-
资助金额:$27.5万
-
财政年份:2007
-
负责人:Gary Leavens
-
依托单位:
Collaborative Research: CRI: CRD: A JML Community Infrastructure -- Revitalizing Tools and Documentation to Aid Formal Methods Research
-
批准号:0808913
-
项目类别:Continuing Grant
-
资助金额:$0.0万
-
财政年份:2007
-
负责人:Gary Leavens
-
依托单位:
Collaborative Research: Formal Methods for Behavioral Subclassing and Callbacks
-
批准号:0429567
-
项目类别:Continuing Grant
-
资助金额:$12.0万
-
财政年份:2004
-
负责人:Gary Leavens
-
依托单位:
More Modular Reasoning for Aspect-Oriented Programs
-
批准号:0428078
-
项目类别:Standard Grant
-
资助金额:$5.5万
-
财政年份:2004
-
负责人:Gary Leavens
-
依托单位:
Formal Methods for Extensible Object-Oriented Software
-
批准号:0097907
-
项目类别:Standard Grant
-
资助金额:$20.0万
-
财政年份:2001
-
负责人:Gary Leavens
-
依托单位:
Formal Methods for Multimethod Software Components
-
批准号:9803843
-
项目类别:Standard Grant
-
资助金额:$21.0万
-
财政年份:1998
-
负责人:Gary Leavens
-
依托单位:
A Theoretical and Practical Basis for Applying Formal Methods to Object-Oriented Programming and C++
-
批准号:9503168
-
项目类别:Continuing Grant
-
资助金额:$24.0万
-
财政年份:1995
-
负责人:Gary Leavens
-
依托单位:
Formal Specification for C++ Programs
-
批准号:9108654
-
项目类别:Standard Grant
-
资助金额:$5.53万
-
财政年份:1991
-
负责人:Gary Leavens
-
依托单位:
海外基金