{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T20:30:30Z","timestamp":1770409830110,"version":"3.49.0"},"publisher-location":"Cham","reference-count":20,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319296272","type":"print"},{"value":"9783319296289","type":"electronic"}],"license":[{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2016,1,1]],"date-time":"2016-01-01T00:00:00Z","timestamp":1451606400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2016]]},"DOI":"10.1007\/978-3-319-29628-9_2","type":"book-chapter","created":{"date-parts":[[2016,2,28]],"date-time":"2016-02-28T21:04:31Z","timestamp":1456693471000},"page":"80-102","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Program Refinement, Perfect Secrecy and Information Flow"],"prefix":"10.1007","author":[{"given":"Annabelle K.","family":"McIver","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2016,3,1]]},"reference":[{"key":"2_CR1","doi-asserted-by":"publisher","DOI":"10.1017\/CBO9780511624162","volume-title":"The B Book: Assigning Programs to Meanings","author":"J-R Abrial","year":"1996","unstructured":"Abrial, J.-R.: The B Book: Assigning Programs to Meanings. Cambridge University Press, New York (1996)"},{"key":"2_CR2","doi-asserted-by":"crossref","unstructured":"Alvim, M.S., Chatzikokolakis, K., Palamidessi, C., Smith, G.: Measuring information leakage using generalized gain functions. In: Proceedings of the 25th IEEE Computer Security Foundations Symposium (CSF 2012), pp. 265\u2013279, June 2012","DOI":"10.1109\/CSF.2012.26"},{"key":"2_CR3","unstructured":"Back, R.-J.R.: Correctness preserving program refinements: proof theory and applications, Tract 131, Mathematisch Centrum, Amsterdam (1980)"},{"key":"2_CR4","volume-title":"Cryptography and Data Security","author":"D Denning","year":"1983","unstructured":"Denning, D.: Cryptography and Data Security. Addison-Wesley, Boston (1983)"},{"key":"2_CR5","doi-asserted-by":"crossref","unstructured":"Goguen, J.A., Meseguer, J.: Unwinding and inference control. In: Proceedings of the IEEE Symposium on Security and Privacy, pp. 75\u201386. IEEE Computer Society (1984)","DOI":"10.1109\/SP.1984.10019"},{"key":"2_CR6","doi-asserted-by":"crossref","unstructured":"Landauer, J., Redmond, T.: A lattice of information. In: Proceedings of the 6th IEEE Computer Security Foundations Workshop (CSFW 1993), pp. 65\u201370, June 1993","DOI":"10.1109\/CSFW.1993.246638"},{"issue":"1\u20133","key":"2_CR7","first-page":"113","volume":"37","author":"KRM Leino","year":"2000","unstructured":"Leino, K.R.M., Joshi, R.: A semantic approach to secure information flow. Sci. Comput. Program. 37(1\u20133), 113\u2013138 (2000)","journal-title":"Sci. Comput. Program."},{"key":"2_CR8","doi-asserted-by":"crossref","unstructured":"Mantel, H.: Preserving information flow properties under refinement. In: Proceedings of the IEEE Symposium Security and Privacy, pp. 78\u201391 (2001)","DOI":"10.1109\/SECPRI.2001.924289"},{"key":"2_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"61","DOI":"10.1007\/978-3-642-03466-4_3","volume-title":"Theoretical Aspects of Computing - ICTAC 2009","author":"AK McIver","year":"2009","unstructured":"McIver, A.K.: The secret art of computer programming. In: Leucker, M., Morgan, C. (eds.) ICTAC 2009. LNCS, vol. 5684, pp. 61\u201378. Springer, Heidelberg (2009)"},{"key":"2_CR10","unstructured":"McIver, A.K., Morgan, C.C.: A calculus of revelations. Presented at VSTTE Theories Workshop, October 2008. http:\/\/www.cs.york.ac.uk\/vstte08\/"},{"key":"2_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"289","DOI":"10.1007\/978-3-642-05089-3_19","volume-title":"FM 2009: Formal Methods","author":"AK McIver","year":"2009","unstructured":"McIver, A.K., Morgan, C.C.: Sums and Lovers: Case Studies in Security, Compositionality and Refinement. In: Cavalcanti, A., Dams, D.R. (eds.) FM 2009. LNCS, vol. 5850, pp. 289\u2013304. Springer, Heidelberg (2009)"},{"key":"2_CR12","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"223","DOI":"10.1007\/978-3-642-14162-1_19","volume-title":"Automata, Languages and Programming","author":"A McIver","year":"2010","unstructured":"McIver, A., Meinicke, L., Morgan, C.: Compositional closure for bayes risk in probabilistic noninterference. In: Abramsky, S., Gavoille, C., Kirchner, C., Meyer auf der Heide, F., Spirakis, P.G. (eds.) ICALP 2010. LNCS, vol. 6199, pp. 223\u2013235. Springer, Heidelberg (2010)"},{"key":"2_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"83","DOI":"10.1007\/978-3-642-54792-8_5","volume-title":"Principles of Security and Trust","author":"A McIver","year":"2014","unstructured":"McIver, A., Morgan, C., Smith, G., Espinoza, B., Meinicke, L.: Abstract channels and their robust information-leakage ordering. In: Abadi, M., Kremer, S. (eds.) POST 2014 (ETAPS 2014). LNCS, vol. 8414, pp. 83\u2013102. Springer, Heidelberg (2014)"},{"key":"2_CR14","volume-title":"Programming from Specifications","author":"CC Morgan","year":"1994","unstructured":"Morgan, C.C.: Programming from Specifications, 2nd edn. Prentice-Hall, Upper Saddle River (1994). http:\/\/web.comlab.ox.ac.uk\/oucl\/publications\/books\/PfS\/","edition":"2"},{"key":"2_CR15","series-title":"Springer","doi-asserted-by":"publisher","first-page":"359","DOI":"10.1007\/11783596_21","volume-title":"Math Prog Construction","author":"CC Morgan","year":"2006","unstructured":"Morgan, C.C.: The shadow knows: refinement of ignorance in sequential programs. In: Uustalu, T. (ed.) Math Prog Construction. Springer, vol. 4014, pp. 359\u2013378. Springer, Treats Dining Cryptographers (2006)"},{"issue":"8","key":"2_CR16","doi-asserted-by":"publisher","first-page":"629","DOI":"10.1016\/j.scico.2007.09.003","volume":"74","author":"CC Morgan","year":"2009","unstructured":"Morgan, C.C., Knows, T.S.: Refinement of ignorance in sequential programs. Sci. Comput. Program. 74(8), 629\u2013653 (2009). Treats Oblivious Transfer","journal-title":"Sci. Comput. Program."},{"issue":"1","key":"2_CR17","doi-asserted-by":"publisher","first-page":"59","DOI":"10.1023\/A:1011553200337","volume":"14","author":"A Sabelfeld","year":"2001","unstructured":"Sabelfeld, A., Sands, D.: A PER model of secure information flow in sequential programs. High.-Ord. Symbolic Comput. 14(1), 59\u201391 (2001)","journal-title":"High.-Ord. Symbolic Comput."},{"key":"2_CR18","doi-asserted-by":"crossref","unstructured":"Schmidt, B., Schaller, P., Basin, D.: Impossibility results for secret establishment. In: Proceedings of the 23rd IEEE Computer Security Foundations Symposium (CSF), pp. 261\u2013273 (2010)","DOI":"10.1109\/CSF.2010.25"},{"issue":"11","key":"2_CR19","doi-asserted-by":"publisher","first-page":"612","DOI":"10.1145\/359168.359176","volume":"22","author":"A Shamir","year":"1979","unstructured":"Shamir, A.: How to share a secret. Commun. ACM 22(11), 612\u2013613 (1979)","journal-title":"Commun. ACM"},{"key":"2_CR20","doi-asserted-by":"publisher","first-page":"656","DOI":"10.1002\/j.1538-7305.1949.tb00928.x","volume":"28","author":"CE Shannon","year":"1949","unstructured":"Shannon, C.E.: Theory of secrecy systems. Bell Syst. Tech. J. 28, 656\u2013715 (1949)","journal-title":"Bell Syst. Tech. J."}],"container-title":["Lecture Notes in Computer Science","Engineering Trustworthy Software Systems"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-29628-9_2","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2026,2,6]],"date-time":"2026-02-06T09:57:47Z","timestamp":1770371867000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-29628-9_2"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2016]]},"ISBN":["9783319296272","9783319296289"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-29628-9_2","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2016]]},"assertion":[{"value":"1 March 2016","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}