Control Flow Analysis (CFA) has been proven successful for the analysis of cryptographic protocols. Due to its over-approximative nature, the absence of detected flaws implies their absence also at run time, while their presence only says that there is the possibility for flaws to occur. Nevertheless, the static detection of a flaw can be considered as a warning bell that alerts against a possible attack, of which the flaw is the result. Reconstructing the possible attack leading to the detected flaw is not trivial, though. We propose a CFA enriched with causal information that accounts for attacker activity. In case a flaw is predicted, the causal information provides a sort of climbing holds that can be escalated to reconstruct the attack sequence leading to the flaw.

Static evidences for attack reconstruction / Bodei, Chiara; Brodo, Linda; Focardi, Riccardo. - 9465:(2015), pp. 162-182. ( Programming Languages with Applications to Biology and Security - Essays Dedicated to Pierpaolo Degano on the Occasion of His 65th Birthday) [10.1007/978-3-319-25527-9_12].

Static evidences for attack reconstruction

BRODO, Linda;
2015-01-01

Abstract

Control Flow Analysis (CFA) has been proven successful for the analysis of cryptographic protocols. Due to its over-approximative nature, the absence of detected flaws implies their absence also at run time, while their presence only says that there is the possibility for flaws to occur. Nevertheless, the static detection of a flaw can be considered as a warning bell that alerts against a possible attack, of which the flaw is the result. Reconstructing the possible attack leading to the detected flaw is not trivial, though. We propose a CFA enriched with causal information that accounts for attacker activity. In case a flaw is predicted, the causal information provides a sort of climbing holds that can be escalated to reconstruct the attack sequence leading to the flaw.
2015
Inglese
Bodei, C., Brodo, L., Focardi, R.
Chiara Bodei and Gian Luigi Ferrari and Corrado Priami
Programming Languages with Applications to Biology and Security - Essays Dedicated to Pierpaolo Degano on the Occasion of His 65th Birthday
Contributo
Programming Languages with Applications to Biology and Security - Essays Dedicated to Pierpaolo Degano on the Occasion of His 65th Birthday
9465
162
182
21
978-3-319-25526-2
978-3-319-25527-9
978-3-319-25526-2
978-3-319-25527-9
http://springerlink.com/content/0302-9743/copyright/2005/
Springer Verlag
Esperti anonimi
Internazionale
Theoretical Computer Science; Computer Science (all)
No
Static evidences for attack reconstruction / Bodei, Chiara; Brodo, Linda; Focardi, Riccardo. - 9465:(2015), pp. 162-182. ( Programming Languages with Applications to Biology and Security - Essays Dedicated to Pierpaolo Degano on the Occasion of His 65th Birthday) [10.1007/978-3-319-25527-9_12].
4 Contributo in Atti di Convegno (Proceeding)::4.1 Contributo in Atti di convegno
Bodei, Chiara; Brodo, Linda; Focardi, Riccardo
273
3
none
info:eu-repo/semantics/conferenceObject
File in questo prodotto:
Non ci sono file associati a questo prodotto.

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11388/173741
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 11
  • ???jsp.display-item.citation.isi??? 9
social impact