Secure information flow and program logics

Lennart Beringer, Martin Hofmann
2007 Computer Security Foundations Workshop (CSFW), Proceedings of the IEEE  
We present interpretations of type systems for secure information flow in Hoare logic, complementing previous encodings in binary (e.g. relational) program logics. Treating base-line non-interference, multi-level security and flow sensitivity for a while language, we show how typing derivations may be used to automatically generate proofs in the program logic that certify the absence of illicit flows. In addition, we present proof rules for baseline non-interference for object-manipulating
more » ... uctions, As a consequence, standard verification technology may be used for verifying that a concrete program satisfies the noninterference property. Our development is based on a formalisation of the encodings in Isabelle/HOL.
doi:10.1109/csf.2007.30 dblp:conf/csfw/BeringerH07 fatcat:ig3kwrdrwzdnlkmkmvqwoki3ce