An information flow verifier for small embedded systems

  • Authors:
  • Dorina Ghindici;Gilles Grimaud;Isabelle Simplot-Ryl

  • Affiliations:
  • L.I.F.L., CNRS, UMR, Université de Lille I, Villeneuve d'Ascq Cedex, France;L.I.F.L., CNRS, UMR, Université de Lille I, Villeneuve d'Ascq Cedex, France;L.I.F.L., CNRS, UMR, Université de Lille I, Villeneuve d'Ascq Cedex, France

  • Venue:
  • WISTP'07 Proceedings of the 1st IFIP TC6 /WG8.8 /WG11.2 international conference on Information security theory and practices: smart cards, mobile and ubiquitous computing systems
  • Year:
  • 2007

Quantified Score

Hi-index 0.00

Visualization

Abstract

Insecurity arising from illegal information flow represents a real threat in small computing environments allowing code sharing, dynamic class loading and overloading. We introduce a verifier able to certify at loading time Java applications already typed with signatures describing possible information flows. The verifier is implemented as a class loader and can be used on any Java Virtual Machine. The experimental results provided here support our approach and show that the verifier can be successfully embedded. As far as we know, this is the first information flow analysis adapted to open embedded systems.