Projects per year
Abstract
Developing JavaScript and web applications with confidentiality and integrity guarantees is challenging. Information flow control enables the enforcement of such guarantees. However, the integration of this technique into software tools used by developers in their workflow is missing. In this paper we present GuardiaML, a machine learning-assisted dynamic information flow control tool for JavaScript web applications. GuardiaML enables developers to detect unwanted information flow from sensitive sources to public sinks. It can handle the DOM and interaction with internal and external libraries and services. Because the specification of sources and sinks can be tedious, GuardiaML assists in this process by suggesting the tagging of sources and sinks via a machine learning component.
Original language | English |
---|---|
Title of host publication | Proceedings of the 26th International Conference on Software Analysis, Evolution, and Reengineering (SANER 2019) |
Editors | Emad Shihab, David Lo, Xinyu Wang |
Publisher | IEEE |
Pages | 624-628 |
Number of pages | 5 |
ISBN (Electronic) | 9781728105918 |
ISBN (Print) | 978-1-7281-0591-8 |
DOIs | |
Publication status | Published - 15 Mar 2019 |
Event | 26th IEEE International Conference on Software Analysis, Evolution, and Reengineering (SANER 2019) - Zhejiang University, Hangzhou, China Duration: 24 Feb 2019 → 27 Feb 2019 Conference number: 26 https://saner2019.github.io |
Publication series
Name | SANER 2019 - Proceedings of the 2019 IEEE 26th International Conference on Software Analysis, Evolution, and Reengineering |
---|
Conference
Conference | 26th IEEE International Conference on Software Analysis, Evolution, and Reengineering (SANER 2019) |
---|---|
Abbreviated title | SANER |
Country/Territory | China |
City | Hangzhou |
Period | 24/02/19 → 27/02/19 |
Internet address |
Keywords
- Information Flow Control
- JavaScript Security
- Machine Learning
- Programming Languages
Fingerprint
Dive into the research topics of 'GuardiaML: Machine Learning-Assisted Dynamic Information Flow Control'. Together they form a unique fingerprint.Projects
- 1 Finished
-
BRGIMP4: SECLOUD - Innoviris BRIDGE 2014
De Hert, P., Nowe, A., Gonzalez Boix, E. & De Roover, C.
1/09/15 → 31/08/18
Project: Applied
Activities
- 1 Talk or presentation at a conference
-
GuardiaML: Machine Learning-Assisted Dynamic Information Flow Control
Angel Luis Scull Pupo (Speaker)
25 Jan 2019Activity: Talk or presentation › Talk or presentation at a conference