On the Compositionality of Dynamic Leakage and Its Application to the Quantification Problem

05/11/2019
by   Bao Trung Chu, et al.
0

Quantitative information flow (QIF) is traditionally defined as the expected value of information leakage over all feasible program runs and it fails to identify vulnerable programs where only limited number of runs leak large amount of information. As discussed in Bielova (2016), a good notion for dynamic leakage and an efficient way of computing the leakage are needed. To address this problem, the authors have already proposed two notions for dynamic leakage and a method of quantifying dynamic leakage based on model counting. Inspired by the work of Kawamoto et. al. (2017), this paper proposes two efficient methods for computing dynamic leakage, a compositional method along with the sequential structure of a program and a parallel computation based on the value domain decomposition. For the former, we also investigate both exact and approximated calculations. From the perspective of implementation, we utilize binary decision diagrams (BDDs) and deterministic decomposable negation normal forms (d-DNNFs) to represent Boolean formulas in model counting. Finally, we show experimental results on several examples.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
03/09/2019

Quantifying Dynamic Leakage: Complexity Analysis and Model Counting-based Calculation

A program is non-interferent if it leaks no secret information to an obs...
research
05/05/2022

An Algorithm for Computing the Stratonovich's Value of Information

We propose an algorithm for computing Stratonovich's value of informatio...
research
01/24/2018

An Algebraic Approach for Reasoning About Information Flow

This paper concerns the analysis of information leaks in security system...
research
11/30/2018

Thinging Machine applied to Information Leakage

This paper introduces a case study that involves data leakage in a bank ...
research
01/18/2019

The Conditional Information Leakage Given Eavesdropper's Received Signals in Wiretap Channels

Information leakage in Wyner's wiretap channel model is usually defined ...
research
06/09/2023

McFIL: Model Counting Functionality-Inherent Leakage

Protecting the confidentiality of private data and using it for useful c...
research
02/22/2018

What's the Over/Under? Probabilistic Bounds on Information Leakage

Quantitative information flow (QIF) is concerned with measuring how much...

Please sign up or login with your details

Forgot password? Click here to reset