Skip to Main Content (Press Enter)

Logo CNR
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze

UNI-FIND
Logo CNR

|

UNI-FIND

cnr.it
  • ×
  • Home
  • Persone
  • Pubblicazioni
  • Strutture
  • Competenze
  1. Pubblicazioni

On Probabilistic Application Compliance

Contributo in Atti di convegno
Data di Pubblicazione:
2016
Abstract:
The Security-by-Contract is a paradigm developed to offer a secure environment in which mobile applications can be executed by respecting the security policies of interest. Especially in the Android Apps marketplace, establishing precisely the expected secure app behavior is typically a complex operation that is prone to approximations. Hence, it is worth considering extensions of purely functional approaches that allow the security relevant actions to be quantitatively assessed. This also opens the possibility to balance the application of (expensive) enforcement mechanisms with the security guarantees. With these objectives in view, in this paper we define a probabilistic extension of the Security-by-Contract model, and we show its impact in real-world scenarios through the analysis of several practical Android applications.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
security by contract; Android applications; probabilistic models; enforcement
Elenco autori:
Saracino, Andrea; LA MARRA, Antonio; Martinelli, Fabio
Autori di Ateneo:
MARTINELLI FABIO
Link alla scheda completa:
https://iris.cnr.it/handle/20.500.14243/318599
  • Utilizzo dei cookie

Realizzato con VIVO | Designed by Cineca | 26.5.0.0 | Sorgente dati: PREPROD (Ribaltamento disabilitato)