Bauereiß, T., Pesenti Gritti, A., Popescu, A. et al. (1 more author) (2016) CoSMed: a confidentiality-verified social media platform. In: Blanchette, J.C. and Merz, S., (eds.) Interactive Theorem Proving: 7th International Conference, ITP 2016, Nancy, France, August 22-25, 2016, Proceedings. 7th International Conference, ITP 2016, 22-25 Aug 2016, Nancy, France. Lecture Notes in Computer Science, LNTCS,volume 9807 . Springer International Publishing , pp. 87-106. ISBN 9783319431437
Abstract
This paper describes progress with our agenda of formal verification of information-flow security for realistic systems. We present CoSMed, a social media platform with verified document confidentiality. The system’s kernel is implemented and verified in the proof assistant Isabelle/HOL. For verification, we employ the framework of Bounded-Deducibility (BD) Security, previously introduced for the conference system CoCon. CoSMed is a second major case study in this framework. For CoSMed, the static topology of declassification bounds and triggers that characterized previous instances of BD security has to give way to a dynamic integration of the triggers as part of the bounds.
Metadata
Authors/Creators: |
|
||||
---|---|---|---|---|---|
Copyright, Publisher and Additional Information: | © 2016 Springer International Publishing Switzerland. This is an author-produced version of a paper subsequently published in Lecture Notes in Computer Science. Uploaded in accordance with the publisher's self-archiving policy. | ||||
Keywords: | Policy Language; Proof Assistant; Social Media Platform; Original Trace; Post Content | ||||
Dates: |
|
||||
Institution: | The University of Sheffield | ||||
Academic Units: | The University of Sheffield > Faculty of Engineering (Sheffield) > Department of Computer Science (Sheffield) | ||||
Funding Information: |
|
||||
Depositing User: | Symplectic Sheffield | ||||
Date Deposited: | 20 Oct 2022 16:28 | ||||
Last Modified: | 20 Oct 2022 16:28 | ||||
Status: | Published | ||||
Publisher: | Springer International Publishing | ||||
Series Name: | Lecture Notes in Computer Science | ||||
Refereed: | Yes | ||||
Identification Number: | https://doi.org/10.1007/978-3-319-43144-4_6 | ||||
Related URLs: |