Security issues in language-based software ecosystems

RK Vaidya, L De Carli, D Davidson… - arXiv preprint arXiv …, 2019 - arxiv.org
… In this work, we presented a multi-faceted analysis of the security risks inherent in the
structure of language-based ecosystems. Our first contribution is a taxonomy of attacks based on …

A language-based multi-view approach for combining functional and security models

H Zhao, F Mallet, L Apvrille - 2019 26th Asia-Pacific Software …, 2019 - ieeexplore.ieee.org
… On the other hand, the security and safety issues take a vital role in the CPS, especially in
… a languagebased approach for combining functional views with security and safety views, …

Formal analysis of language-based android security using theorem proving approach

W Khan, M Kamran, A Ahmad, FA Khan… - IEEE Access, 2019 - ieeexplore.ieee.org
… One of the main challenges for mechanising language-based security in … in language-based
security techniques. As the main contributions of the paper, 1) the language-based security, …

A case study in language-based security: Building an I/O library for Wyvern

JA Fish, D Melicher, J Aldrich - Proceedings of the 2020 ACM SIGPLAN …, 2020 - dl.acm.org
… Wyvern covers only a subset of the space of languagebased security, of course, but we
believe it is a subset that defends against important and interesting attacks: commandinjection is …

Towards language-based mitigation of traffic analysis attacks

JF Blaabjerg, A Askarov - 2021 IEEE 34th Computer Security …, 2021 - ieeexplore.ieee.org
Language-based information flow methods provide principled ways of enforcing that the …
The language-based approach is appealing as the security condition of noninterference [20] …

Language-based mechanisms for privacy-by-design

S Tokas, O Owe, T Ramezanifarkhani - … . Data for Better Living: AI and …, 2020 - Springer
… In particular, we use a formal language-based approach with static analysis to enforce
privacy requirements. To make a general solution, we consider a high-level modeling language …

A language-based approach to prevent DDoS attacks in distributed financial agent systems

E Fazeldehkordi, O Owe… - Computer Security …, 2020 - Springer
… To prevent DoS/DDoS flooding attacks in a manner complementary to existing approaches,
we propose an additional layer of defense, based on language-based security analysis. We …

{SandDriller}: A {Fully-Automated} Approach for Testing {Language-Based}{JavaScript} Sandboxes

A Alhamdan, CA Staicu - … Security Symposium (USENIX Security 23), 2023 - usenix.org
language-based sandboxes. Considering the findings in this section, we conclude that
language-based … Thus, there is potential for automated approaches for finding sandbox breakout …

Language-based web session integrity

S Calzavara, R Focardi, N Grimm… - … Computer Security …, 2020 - ieeexplore.ieee.org
… This motivated the design of formal methods to rigorously reason about web session security
… In this paper we introduce the first security type system that enforces session security on a …

Enclosure: language-based restriction of untrusted libraries

A Ghosn, M Kogias, M Payer, JR Larus… - Proceedings of the 26th …, 2021 - dl.acm.org
Language-based hardware-enforced mechanisms: Isolation can be provided by extending
a language with security domains and enforcing isolation with specialized hardware. SOOAP […