Bauereiß, T., Pesenti Gritti, A., Popescu, A. orcid.org/0000-0001-8747-0619 et al. (1 more author) (2018) CoSMed: a confidentiality-verified social media platform. Journal of Automated Reasoning, 61 (1-4). pp. 113-139. ISSN 0168-7433
Abstract
This paper describes progress with our agenda of formal verification of information flow security for realistic systems. We present CoSMed, a social media platform with verified document confidentiality. The system’s kernel is implemented and verified in the proof assistant Isabelle/HOL. For verification, we employ the framework of Bounded-Deducibility (BD) Security, previously introduced for the conference system CoCon. CoSMed is a second major case study in this framework. For CoSMed, the static topology of declassification bounds and triggers that characterized previous instances of BD Security has to give way to a dynamic integration of the triggers as part of the bounds. We also show that, from a theoretical viewpoint, the removal of triggers from the notion of BD Security does not restrict its expressiveness.
Metadata
Item Type: | Article |
---|---|
Authors/Creators: |
|
Copyright, Publisher and Additional Information: | © 2017 Springer Science+Business Media B.V., part of Springer Nature. This is an author-produced version of a paper subsequently published in Journal of Automated Reasoning. Uploaded in accordance with the publisher's self-archiving policy. |
Keywords: | Information flow security; Secure social media platform; Formal verification; Interactive theorem proving; Isabelle/HOL |
Dates: |
|
Institution: | The University of Sheffield |
Academic Units: | The University of Sheffield > Faculty of Engineering (Sheffield) > Department of Computer Science (Sheffield) |
Funding Information: | Funder Grant number Engineering and Physical Sciences Research Council EP/N019547/1 |
Depositing User: | Symplectic Sheffield |
Date Deposited: | 30 Sep 2022 14:07 |
Last Modified: | 30 Sep 2022 14:08 |
Status: | Published |
Publisher: | Springer Science and Business Media LLC |
Refereed: | Yes |
Identification Number: | 10.1007/s10817-017-9443-3 |
Open Archives Initiative ID (OAI ID): | oai:eprints.whiterose.ac.uk:191506 |