2020
DOI: 10.1007/s10817-020-09566-9
|View full text |Cite
|
Sign up to set email alerts
|

CoCon: A Conference Management System with Formally Verified Document Confidentiality

Abstract: We present a case study in formally verified security for realistic systems: the information flow security verification of the functional kernel of a web application, the CoCon conference management system. We use the Isabelle theorem prover to specify and verify fine-grained confidentiality properties, as well as complementary safety and "traceback" properties. The challenges posed by this development in terms of expressiveness have led to bounded-deducibility security, a novel security model and verification… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...

Citation Types

0
0
0

Year Published

2022
2022
2022
2022

Publication Types

Select...
1

Relationship

0
1

Authors

Journals

citations
Cited by 1 publication
references
References 62 publications
(74 reference statements)
0
0
0
Order By: Relevance