Log In Sign Up

A Temporal Logic for Asynchronous Hyperproperties

by   Jan Baumeister, et al.

Hyperproperties are properties of computational systems that require more than one trace to evaluate, e.g., many information-flow security and concurrency requirements. Where a trace property defines a set of traces, a hyperproperty defines a set of sets of traces. The temporal logics HyperLTL and HyperCTL* have been proposed to express hyperproperties. However, their semantics are synchronous in the sense that all traces proceed at the same speed and are evaluated at the same position. This precludes the use of these logics to analyze systems whose traces can proceed at different speeds and allow that different traces take stuttering steps independently. To solve this problem in this paper, we propose an asynchronous variant of HyperLTL. On the negative side, we show that the model-checking problem for this variant is undecidable. On the positive side, we identify a decidable fragment which covers a rich set of formulas with practical applications. We also propose two model-checking algorithms that reduce our problem to the HyperLTL model-checking problem in the synchronous semantics.


page 1

page 2

page 3

page 4


Asynchronous Extensions of HyperLTL

Hyperproperties are a modern specification paradigm that extends trace p...

Active Learning of Abstract System Models from Traces using Model Checking [Extended]

We present a new active model-learning approach to generating abstractio...

On Verifying Timed Hyperproperties

We study the satisfiability and model-checking problems for timed hyperp...

Model Checking Quantitative Hyperproperties

Hyperproperties are properties of sets of computation traces. In this pa...

Bounded Model Checking for Hyperproperties

This paper introduces the first bounded model checking (BMC) algorithm f...

A Constructive Equivalence between Computation Tree Logic and Failure Trace Testing

The two major systems of formal verification are model checking and alge...

A small-step approach to multi-trace checking against interactions

Interaction models describe the exchange of messages between the differe...