1 citations · 1 across the 3 of their papers we have counts for
4 papers · 1 filter
Pipe-Cleaner: Flexible Fuzzing Using Security Policies
Allison Naaktgeboren, Sean Noble Anderson, Andrew Tolmach +1
Fuzzing has proven to be very effective for discovering certain classes of software flaws, but less effective in helping developers process these discoveries. Conventional crash-ba…
Towards Formally Verified Compilation of Tag-Based Policy Enforcement
CHR Chhak, Andrew Tolmach, Sean Anderson
Hardware-assisted reference monitoring is receiving increasing attention as a way to improve the security of existing software. One example is the PIPE architecture extension, whic…
When Good Components Go Bad: Formally Secure Compilation Despite Dynamic Compromise
Carmine Abate, Arthur Azevedo de Amorim, Roberto Blanco +8
We propose a new formal criterion for evaluating secure compilation schemes for unsafe languages, expressing end-to-end security guarantees for software components that may become…
Formally Secure Compilation of Unsafe Low-Level Components (Extended Abstract)
Guglielmo Fachini, Catalin Hritcu, Marco Stronati +5
We propose a new formal criterion for secure compilation, providing strong security guarantees for components written in unsafe, low-level languages with C-style undefined behavior…