Bastys, I., Algehed, M., Sjösten, A., & Sabelfeld, A. (2022). SecWasm: Information Flow Control for WebAssembly. In Static Analysis (pp. 74–103). Springer Nature Switzerland AG. https://doi.org/10.1007/978-3-031-22308-2_5
29th International Symposium on Static Analysis (SAS 2022)
en
Event date:
5-Dec-2022 - 7-Dec-2022
-
Event place:
Auckland, New Zealand
-
Number of Pages:
30
-
Publisher:
Springer Nature Switzerland AG, Cham, Switzerland
-
Peer reviewed:
Yes
-
Keywords:
Information; Flow; Control; Web; Assembly
en
Abstract:
We introduce SecWasm, the first general purpose information-flow control system for WebAssembly (Wasm), thus extending the safety guarantees offered by Wasm with guarantees that applications manipulate sensitive data in a secure way. SecWasm is a hybrid system enforcing termination-insensitive noninterference which overcomes the challenges posed by the uncommon characteristics for machine languages of Wasm in an elegant and thorough way.
en
Project title:
Foundations and Tools for Client-Side Web Security: 771527 (Europäischer Forschungsrat (ERC)) Forschungszentrum für Cybersicherheit und Datenschutz in Wien: ViSP (Wirtschaftsagentur Wien)
-
Project (external):
Program (WASP) funded by the Knut and Alice Wallenberg Foundation Swedish Foundation for Strategic Research (SSF) Swedish Research Council (VR)