Reading List: Language Based Security, Fall 2004

The below list will be updated along the way so as to mention all the papers covered in class.

General

Fred B. Schneider, Greg Morrisett, and Robert Harper: A Language-based Approach to Security.

Andrei Sabelfeld and Andrew C. Myers: Language-based Information-Flow Security.

Information Flow

Dennis Volpano and Geoffrey Smith: A Type-Based Approach to Program Security.

Gérard Boudol and Ilaria Castellani: Noninterference for concurrent programs and thread systems
See here for the key definitions of that paper

Torben Amtoft and Anindya Banerjee: Information Flow Analysis in Logical Form

Anindya Banerjee and David A. Naumann: Stack-based Access Control and Secure Information Flow

Access Control

Lantian Zheng and Stephen Chong and Andrew C. Myers and Steve Zdancewic: Using Replication and Partitioning to Build Secure Distributed Systems

Tom Chothia and Dominic Duggan and Jan Vitek: Type-Based Distributed Access Control


Torben Amtoft
Anindya Banerjee