{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2024,9,7]],"date-time":"2024-09-07T17:36:34Z","timestamp":1725730594004},"publisher-location":"Berlin, Heidelberg","reference-count":18,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783642389078"},{"type":"electronic","value":"9783642389085"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2013]]},"DOI":"10.1007\/978-3-642-38908-5_12","type":"book-chapter","created":{"date-parts":[[2013,6,9]],"date-time":"2013-06-09T22:18:23Z","timestamp":1370816303000},"page":"151-168","source":"Crossref","is-referenced-by-count":0,"title":["First-Class Labels: Using Information Flow to Debug Security Holes"],"prefix":"10.1007","author":[{"given":"Eric","family":"Hennigan","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Christoph","family":"Kerschbaumer","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Stefan","family":"Brunthaler","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Per","family":"Larsen","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Michael","family":"Franz","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","reference":[{"key":"12_CR1","unstructured":"Alexa: Alexa Global Top Sites (2012), \n                    \n                      http:\/\/www.alexa.com\/topsites\n                    \n                    \n                   (checked: February 2013)"},{"key":"12_CR2","doi-asserted-by":"crossref","unstructured":"Austin, T.H., Flanagan, C.: Efficient purely-dynamic information flow analysis. In: Proceedings of the ACM SIGPLAN Workshop on Programming Languages and Analysis for Security, pp. 113\u2013124. ACM (2009)","DOI":"10.1145\/1554339.1554353"},{"key":"12_CR3","doi-asserted-by":"crossref","unstructured":"Austin, T.H., Flanagan, C.: Permissive dynamic information flow analysis. In: Proceedings of the ACM SIGPLAN Workshop on Programming Languages and Analysis for Security, pp. 1\u201312. ACM (2010)","DOI":"10.1145\/1814217.1814220"},{"key":"12_CR4","doi-asserted-by":"crossref","unstructured":"Chugh, R., Meister, J.A., Jhala, R., Lerner, S.: Staged information flow for JavaSript. In: PLDI 2009: Programming Language Design and Implementation, pp. 50\u201362. ACM (2009)","DOI":"10.1145\/1542476.1542483"},{"key":"12_CR5","doi-asserted-by":"crossref","unstructured":"Denning, D.E.: A lattice model of secure information flow. Communications of the ACM, 236\u2013243 (1976)","DOI":"10.1145\/360051.360056"},{"key":"12_CR6","unstructured":"ECMA International: Standard ECMA-262. The ECMAScript language specification (2009), \n                    \n                      http:\/\/www.ecma-international.org\/publications\/standards\/Ecma-262.html\n                    \n                    \n                   (checked: February 2013)"},{"key":"12_CR7","doi-asserted-by":"crossref","unstructured":"Hedin, D., Sabelfeld, A.: Information-flow security for a core of JavaScript. In: Proceedings of the Computer Security Foundations Symposium, pp. 3\u201318 (2012)","DOI":"10.1109\/CSF.2012.19"},{"key":"12_CR8","unstructured":"Hennigan, E., Kerschbaumer, C., Brunthaler, S., Franz, M.: Tracking information flow for dynamically typed programming languages by instruction set extension. Tech. rep., University of California Irvine (2011), \n                    \n                      http:\/\/ssllab.org\/~nsf\/files\/tr_instruction_set_extension.pdf"},{"key":"12_CR9","doi-asserted-by":"crossref","unstructured":"Jang, D., Jhala, R., Lerner, S., Shacham, H.: An empirical study of privacy-violating information flows in JavaScript web applications. In: CCS 2010: Computer and Communications Security, pp. 270\u2013283. ACM (2010)","DOI":"10.1145\/1866307.1866339"},{"key":"12_CR10","doi-asserted-by":"crossref","unstructured":"Just, S., Cleary, A., Shirley, B., Hammer, C.: Information flow analysis for JavaScript. In: PLASTIC 2011: Programming Language and Systems Technologies for Internet Clients, pp. 9\u201318. ACM (2011)","DOI":"10.1145\/2093328.2093331"},{"key":"12_CR11","unstructured":"K.F., D.P.: XSS Attacks Information (2012), \n                    \n                      http:\/\/www.xssed.com\/\n                    \n                    \n                   (checked: February 2013)"},{"key":"12_CR12","unstructured":"Li, P., Zdancewic, S.: Encoding information flow in haskell. In: 19th IEEE Computer Security Foundations Workshop, p. 12. IEEE (2006)"},{"key":"12_CR13","doi-asserted-by":"crossref","unstructured":"Meyerovich, L.A., Livshits, B.: ConScript: Specifying and enforcing fine-grained security policies for JavaScript in the browser. In: SSP 2010: Symposium on Security and Privacy, pp. 481\u2013496 (2010)","DOI":"10.1109\/SP.2010.36"},{"key":"12_CR14","unstructured":"Mozilla Foundation: Same origin policy for JavaScript (2008), \n                    \n                      https:\/\/developer.mozilla.org\/En\/Same_origin_policy_for_JavaScript\n                    \n                    \n                   (checked: February 2013)"},{"key":"12_CR15","unstructured":"Myers, A.C., Zheng, L., Zdancewic, S., Chong, S., Nystrom, N.: Jif: Java information flow (2001), \n                    \n                      http:\/\/www.cs.cornell.edu\/jif\n                    \n                    \n                   (checked: February 2013)"},{"key":"12_CR16","doi-asserted-by":"crossref","unstructured":"Sabelfeld, A., Myers, A.C.: Language-based information-flow security. IEEE Journal on Selected Areas in Communications, 5\u201319 (2003)","DOI":"10.1109\/JSAC.2002.806121"},{"key":"12_CR17","unstructured":"SunSpider: SunSpider JavaScript benchmark (2012), \n                    \n                      http:\/\/www2.webkit.org\/perf\/sunspider-1.0\/sunspider.html\n                    \n                    \n                   (checked: February 2013)"},{"key":"12_CR18","unstructured":"Vogt, P., Nentwich, F., Jovanovic, N., Kruegel, C., Kirda, E., Vigna, G.: Cross site scripting prevention with dynamic data tainting and static analysis. In: NDSS 2007: Network and Distributed System Security Symposium (2007)"}],"container-title":["Lecture Notes in Computer Science","Trust and Trustworthy Computing"],"original-title":[],"link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-642-38908-5_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2019,5,13]],"date-time":"2019-05-13T20:28:43Z","timestamp":1557779323000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-642-38908-5_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2013]]},"ISBN":["9783642389078","9783642389085"],"references-count":18,"URL":"https:\/\/doi.org\/10.1007\/978-3-642-38908-5_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[2013]]}}}