{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,9]],"date-time":"2024-09-09T19:26:26Z","timestamp":1725909986507},"publisher-location":"Cham","reference-count":20,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783319675305"},{"type":"electronic","value":"9783319675312"}],"license":[{"start":{"date-parts":[[2017,1,1]],"date-time":"2017-01-01T00:00:00Z","timestamp":1483228800000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2017]]},"DOI":"10.1007\/978-3-319-67531-2_21","type":"book-chapter","created":{"date-parts":[[2017,9,5]],"date-time":"2017-09-05T05:33:37Z","timestamp":1504589617000},"page":"349-358","source":"Crossref","is-referenced-by-count":0,"title":["SVAuth \u2013 A Single-Sign-On Integration Solution with Runtime Verification"],"prefix":"10.1007","author":[{"given":"Shuo","family":"Chen","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Matt","family":"McCutchen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Phuong","family":"Cao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Shaz","family":"Qadeer","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Ravishankar K.","family":"Iyer","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2017,9,6]]},"reference":[{"key":"21_CR1","unstructured":".NET Core. https:\/\/www.microsoft.com\/net\/core"},{"key":"21_CR2","unstructured":"AllJoyn\u00ae Framework. https:\/\/allseenalliance.org\/framework"},{"key":"21_CR3","doi-asserted-by":"crossref","unstructured":"Bansal, C., Bhargavan, K., Maffeis, S.: Discovering concrete attacks on website authorization by formal analysis. In: 25th IEEE Computer Security Foundations Symposium, CSF (2012)","DOI":"10.1109\/CSF.2012.27"},{"key":"21_CR4","unstructured":"Bai, G., Lei, J., Meng, G., Venkatraman, S.S., Saxena, P., Sun, J., Liu, Y., Dong, J.S.: Authscan: Automatic extraction of web authentication protocols from implementations. In: ISOC Network and Distributed System Security Symposium (2013)"},{"key":"21_CR5","unstructured":"Barnett, M., Qadeer, S.: BCT: A translator from MSIL to Boogie. In: Seventh Workshop on Bytecode Semantics, Verification, Analysis and Transformation (2012)"},{"key":"21_CR6","doi-asserted-by":"crossref","unstructured":"Chen, E., Chen, S., Qadeer, S., Wang, R.: Securing multiparty online services via certification of symbolic transactions. In: IEEE Symposium on Security and Privacy (2015)","DOI":"10.1093\/oxfordhb\/9780199366521.013.13"},{"key":"21_CR7","unstructured":"Chen, E., Pei, Y., Tian, Y., Chen, S., Kotcher, R., Tague, P.: 1000 Ways to Die in Mobile OAuth. Blackhat, USA (2016)"},{"key":"21_CR8","doi-asserted-by":"crossref","unstructured":"Chen, F., d\u2019Amorim, M., Rosu, G.: Checking and correcting behaviors of java programs at runtime with java-MOP. In: The Runtime Verification Workshop (2005)","DOI":"10.1016\/j.entcs.2006.02.002"},{"key":"21_CR9","doi-asserted-by":"crossref","unstructured":"Chen, F., Rosu, G.: MOP: An efficient and generic runtime verification framework. In: The ACM SIGPLAN Conference on Systems, Programming, Languages and Applications (OOPSLA) (2007)","DOI":"10.1145\/1297027.1297069"},{"key":"21_CR10","unstructured":"Cloud Security Alliance. The Notorious Nine \u2013 Cloud Computing Top Threats in 2013. https:\/\/downloads.cloudsecurityalliance.org\/initiatives\/top_threats\/The_Notorious_Nine_Cloud_Computing_Top_Threats_in_2013.pdf"},{"key":"21_CR11","unstructured":"DZone.com. The Liskov Substitution Principle (With Examples). https:\/\/dzone.com\/articles\/the-liskov-substitution-principle-with-examples"},{"key":"21_CR12","doi-asserted-by":"crossref","unstructured":"Lal, A., Qadeer, S., Lahiri, S.: A solver for reachability modulo theories. In: Computer Aided Verification (2012)","DOI":"10.1007\/978-3-642-31424-7_32"},{"issue":"6","key":"21_CR13","doi-asserted-by":"crossref","first-page":"1811","DOI":"10.1145\/197320.197383","volume":"16","author":"BH Liskov","year":"1994","unstructured":"Liskov, B.H., Wing, J.M.: A behavioral notion of subtyping. ACM Trans. Program. Lang. Syst. 16(6), 1811\u20131841 (1994)","journal-title":"ACM Trans. Program. Lang. Syst."},{"key":"21_CR14","doi-asserted-by":"crossref","unstructured":"McCutchen, M., Song, D., Chen, S., Qadeer, S.: Self-verifying execution (Position Paper). In: Proceedings of the IEEE Cybersecurity Development Conference (SecDev) (2016)","DOI":"10.1109\/SecDev.2016.035"},{"key":"21_CR15","doi-asserted-by":"crossref","unstructured":"Sun, S.-T., Beznosov, K.: The devil is in the (implementation) details: an empirical analysis of OAuth SSO systems. In: ACM conference on Computer and Communications Security (2012)","DOI":"10.1145\/2382196.2382238"},{"key":"21_CR16","unstructured":"Trusted Computing Group. Trusted Platform Module Library Specification 2.0. http:\/\/www.trustedcomputinggroup.org\/resources\/tpm_library_specification"},{"key":"21_CR17","doi-asserted-by":"crossref","unstructured":"Wang, R., Chen, S., Wang, X.F.: Signing me onto your accounts through facebook and google: a traffic-guided security study of commercially deployed single-sign-on web services. In: IEEE Symposium on Security and Privacy (2012)","DOI":"10.1109\/SP.2012.30"},{"key":"21_CR18","unstructured":"Wang, R., Zhou, Y., Chen, S., Qadeer, S., Evans, D., Gurevich, Y.: Explicating SDKs: Uncovering Assumptions Underlying Secure Authentication and Authorization. USENIX Security (2013)"},{"key":"21_CR19","unstructured":"Yang, R., Lau, W.C., Liu, T.: Signing into One Billion Mobile App Accounts Effortlessly with OAuth 2.0. Blackhat, Europe (2016)"},{"key":"21_CR20","unstructured":"Zhou, Y., Evans, D.: SSOScan: Automated Testing of Web Applications for Single Sign-On Vulnerabilities. USENIX Security (2014)"}],"container-title":["Lecture Notes in Computer Science","Runtime Verification"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-67531-2_21","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,10,3]],"date-time":"2019-10-03T00:19:40Z","timestamp":1570061980000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-319-67531-2_21"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2017]]},"ISBN":["9783319675305","9783319675312"],"references-count":20,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-67531-2_21","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2017]]}}}