{"id":"https://openalex.org/W3047270535","doi":"https://doi.org/10.1109/csf49147.2020.00018","title":"Types and Abstract Interpretation for Authorization Hook Advice","display_name":"Types and Abstract Interpretation for Authorization Hook Advice","publication_year":2020,"publication_date":"2020-06-01","ids":{"openalex":"https://openalex.org/W3047270535","doi":"https://doi.org/10.1109/csf49147.2020.00018","mag":"3047270535"},"language":"en","primary_location":{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/csf49147.2020.00018","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false},"type":"article","type_crossref":"proceedings-article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5019772090","display_name":"Christian Skalka","orcid":"https://orcid.org/0000-0002-0402-809X"},"institutions":[{"id":"https://openalex.org/I111236770","display_name":"University of Vermont","ror":"https://ror.org/0155zta11","country_code":"US","type":"education","lineage":["https://openalex.org/I111236770"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Christian Skalka","raw_affiliation_strings":["Computer Science, University of Vermont"],"affiliations":[{"raw_affiliation_string":"Computer Science, University of Vermont","institution_ids":["https://openalex.org/I111236770"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5019557654","display_name":"David Darais","orcid":"https://orcid.org/0000-0003-2314-0287"},"institutions":[{"id":"https://openalex.org/I111236770","display_name":"University of Vermont","ror":"https://ror.org/0155zta11","country_code":"US","type":"education","lineage":["https://openalex.org/I111236770"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"David Darais","raw_affiliation_strings":["Computer Science, University of Vermont"],"affiliations":[{"raw_affiliation_string":"Computer Science, University of Vermont","institution_ids":["https://openalex.org/I111236770"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5055045569","display_name":"Trent Jaeger","orcid":"https://orcid.org/0000-0002-4964-1170"},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Trent Jaeger","raw_affiliation_strings":["Computer Science and Engineering, Penn State University"],"affiliations":[{"raw_affiliation_string":"Computer Science and Engineering, Penn State University","institution_ids":["https://openalex.org/I130769515"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5040849462","display_name":"Frank Capobianco","orcid":null},"institutions":[{"id":"https://openalex.org/I130769515","display_name":"Pennsylvania State University","ror":"https://ror.org/04p491231","country_code":"US","type":"education","lineage":["https://openalex.org/I130769515"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Frank Capobianco","raw_affiliation_strings":["Computer Science and Engineering, Penn State University"],"affiliations":[{"raw_affiliation_string":"Computer Science and Engineering, Penn State University","institution_ids":["https://openalex.org/I130769515"]}]}],"institution_assertions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.238,"has_fulltext":false,"cited_by_count":4,"citation_normalized_percentile":{"value":0.80582,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":77,"max":79},"biblio":{"volume":null,"issue":null,"first_page":"139","last_page":"152"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10927","display_name":"Access Control and Trust","score":0.9902,"subfield":{"id":"https://openalex.org/subfields/3312","display_name":"Sociology and Political Science"},"field":{"id":"https://openalex.org/fields/33","display_name":"Social Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9778,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/abstract-interpretation","display_name":"Abstract Interpretation","score":0.60394984},{"id":"https://openalex.org/keywords/advice","display_name":"Advice (programming)","score":0.5324351},{"id":"https://openalex.org/keywords/information-flow","display_name":"Information flow","score":0.53107446}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7714089},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.61722696},{"id":"https://openalex.org/C108759981","wikidata":"https://www.wikidata.org/wiki/Q788590","display_name":"Authorization","level":2,"score":0.6129558},{"id":"https://openalex.org/C2780654840","wikidata":"https://www.wikidata.org/wiki/Q333341","display_name":"Abstract interpretation","level":2,"score":0.60394984},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.5876991},{"id":"https://openalex.org/C2778738651","wikidata":"https://www.wikidata.org/wiki/Q16546687","display_name":"Novelty","level":2,"score":0.567266},{"id":"https://openalex.org/C2779955035","wikidata":"https://www.wikidata.org/wiki/Q4686785","display_name":"Advice (programming)","level":2,"score":0.5324351},{"id":"https://openalex.org/C2779136372","wikidata":"https://www.wikidata.org/wiki/Q10283002","display_name":"Information flow","level":2,"score":0.53107446},{"id":"https://openalex.org/C169468491","wikidata":"https://www.wikidata.org/wiki/Q146923","display_name":"Middleware (distributed applications)","level":2,"score":0.5236216},{"id":"https://openalex.org/C527412718","wikidata":"https://www.wikidata.org/wiki/Q855395","display_name":"Interpretation (philosophy)","level":2,"score":0.50798637},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.48431793},{"id":"https://openalex.org/C206345919","wikidata":"https://www.wikidata.org/wiki/Q20380951","display_name":"Resource (disambiguation)","level":2,"score":0.42340285},{"id":"https://openalex.org/C2775924081","wikidata":"https://www.wikidata.org/wiki/Q55608371","display_name":"Control (management)","level":2,"score":0.42098498},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.32946062},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.24575013},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.21297649},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.18409145},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0},{"id":"https://openalex.org/C27206212","wikidata":"https://www.wikidata.org/wiki/Q34178","display_name":"Theology","level":1,"score":0.0},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"is_oa":false,"landing_page_url":"https://doi.org/10.1109/csf49147.2020.00018","pdf_url":null,"source":null,"license":null,"license_id":null,"version":null,"is_accepted":false,"is_published":false}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.43,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, justice, and strong institutions"}],"grants":[],"datasets":[],"versions":[],"referenced_works_count":43,"referenced_works":["https://openalex.org/W154231405","https://openalex.org/W1582703556","https://openalex.org/W1601356550","https://openalex.org/W1607820520","https://openalex.org/W1963705166","https://openalex.org/W1995369968","https://openalex.org/W1999040234","https://openalex.org/W2007686997","https://openalex.org/W2007738069","https://openalex.org/W2014764321","https://openalex.org/W2014950794","https://openalex.org/W2043100293","https://openalex.org/W2046137117","https://openalex.org/W2059668263","https://openalex.org/W2086042629","https://openalex.org/W2088923183","https://openalex.org/W2090746009","https://openalex.org/W2100645382","https://openalex.org/W2118068787","https://openalex.org/W2129278597","https://openalex.org/W2131916295","https://openalex.org/W2132138019","https://openalex.org/W2136296832","https://openalex.org/W2138788987","https://openalex.org/W2141736438","https://openalex.org/W2149465027","https://openalex.org/W2150174204","https://openalex.org/W2150332791","https://openalex.org/W2161337603","https://openalex.org/W2163672449","https://openalex.org/W2166049140","https://openalex.org/W2199318523","https://openalex.org/W2381524979","https://openalex.org/W2402699044","https://openalex.org/W2509308157","https://openalex.org/W2536778960","https://openalex.org/W2733797181","https://openalex.org/W2760684713","https://openalex.org/W3099266052","https://openalex.org/W3125045354","https://openalex.org/W4250728693","https://openalex.org/W52562630","https://openalex.org/W592737103"],"related_works":["https://openalex.org/W4390045902","https://openalex.org/W4298042445","https://openalex.org/W2555738791","https://openalex.org/W2367441718","https://openalex.org/W2132693790","https://openalex.org/W2123296434","https://openalex.org/W2104547074","https://openalex.org/W2017675414","https://openalex.org/W2017616439","https://openalex.org/W1593822213"],"abstract_inverted_index":{"Authorization":[0],"hooks":[1,65],"are":[2,17,32],"access":[3,98],"control":[4,99],"checks":[5],"that":[6,88],"prevent":[7],"unauthorized":[8],"principals":[9],"from":[10],"interacting":[11],"with":[12],"some":[13],"protected":[14],"resource,":[15],"and":[16,28,58],"used":[18],"extensively":[19],"in":[20,46,66],"critical":[21],"software":[22],"such":[23],"as":[24],"operating":[25],"systems,":[26],"middleware,":[27],"server":[29],"programs.":[30],"They":[31],"often":[33],"intended":[34],"to":[35],"mediate":[36],"information":[37,72,94],"flow":[38,73,95],"between":[39,74],"subjects":[40],"(e.g.,":[41],"file":[42],"owners),":[43],"but":[44],"typically":[45],"an":[47,83],"ad-hoc":[48],"manner.":[49],"In":[50],"this":[51],"paper":[52],"we":[53],"present":[54],"a":[55],"static":[56],"type":[57],"effect":[59],"system":[60,90],"for":[61],"detecting":[62],"whether":[63],"authorization":[64],"programs":[67],"properly":[68],"defend":[69],"against":[70],"undesired":[71],"subjects.":[75],"A":[76],"significant":[77],"novelty":[78],"of":[79,97],"our":[80],"approach":[81],"is":[82],"integrated":[84],"abstract":[85],"interpretation-based":[86],"tool":[87],"guides":[89],"clients":[91],"through":[92],"the":[93],"consequences":[96],"policy":[100],"decisions.":[101]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W3047270535","counts_by_year":[{"year":2024,"cited_by_count":1},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":1},{"year":2021,"cited_by_count":1}],"updated_date":"2024-12-12T10:30:17.784407","created_date":"2020-08-10"}