Visible to the public Abstract Runtime Structure for Reasoning About Security: Poster

TitleAbstract Runtime Structure for Reasoning About Security: Poster
Publication TypeConference Paper
Year of Publication2016
AuthorsAbi-Antoun, Marwan, Khalaj, Ebrahim, Vanciu, Radu, Moghimi, Ahmad
Conference NameProceedings of the Symposium and Bootcamp on the Science of Security
PublisherACM
Conference LocationNew York, NY, USA
ISBN Number978-1-4503-4277-3
Keywordscomposability, graph query, Metrics, object graphs, object oriented security, ownership type inference, pubcrawl, Resiliency
Abstract

We propose an interactive approach where analysts reason about the security of a system using an abstraction of its runtime structure, as opposed to looking at the code. They interactively refine a hierarchical object graph, set security properties on abstract objects or edges, query the graph, and investigate the results by studying highlighted objects or edges or tracing to the code. Behind the scenes, an inference analysis and an extraction analysis maintain the soundness of the graph with respect to the code.

URLhttp://doi.acm.org/10.1145/2898375.2898377
DOI10.1145/2898375.2898377
Citation Keyabi-antoun_abstract_2016