Analysing the information flow properties of object-capability patterns

  • Authors:
  • Toby Murray;Gavin Lowe

  • Affiliations:
  • Oxford University Computing Laboratory, Oxford, United Kingdom;Oxford University Computing Laboratory, Oxford, United Kingdom

  • Venue:
  • FAST'09 Proceedings of the 6th international conference on Formal Aspects in Security and Trust
  • Year:
  • 2009

Quantified Score

Hi-index 0.00

Visualization

Abstract

We consider the problem of detecting covert channels within security-enforcing object-capability patterns. Traditional formalisms for reasoning about the security properties of object-capability patterns require one to be aware, a priori, of all possible mechanisms for covert information flow that might be present within a pattern, in order to detect covert channels within it. We show how the CSP process algebra, and its model-checker FDR, can be applied to overcome this limitation.