2 papers
cs.CR2023
Automatic Bill of Materials
Nicholas Boucher, Ross Anderson
Ensuring the security of software supply chains requires reliable identification of upstream dependencies. We present the Automatic Bill of Materials, or ABOM, a technique for embe…
cs.CR2023
If it's Provably Secure, It Probably Isn't: Why Learning from Proof Failure is Hard
Ross Anderson, Nicholas Boucher
In this paper we're going to explore the ways in which security proofs can fail, and their broader lessons for security engineering. To mention just one example, Larry Paulson prov…