{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,10,30]],"date-time":"2025-10-30T06:57:06Z","timestamp":1761807426309,"version":"3.41.0"},"publisher-location":"New York, NY, USA","reference-count":39,"publisher":"ACM","license":[{"start":{"date-parts":[[2008,6,7]],"date-time":"2008-06-07T00:00:00Z","timestamp":1212796800000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2008,6,7]]},"DOI":"10.1145\/1375696.1375703","type":"proceedings-article","created":{"date-parts":[[2008,6,10]],"date-time":"2008-06-10T14:13:22Z","timestamp":1213107202000},"page":"45-56","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":6,"title":["A security domain model to assess software for exploitable covert channels"],"prefix":"10.1145","author":[{"given":"Alan B.","family":"Shaffer","sequence":"first","affiliation":[{"name":"Naval Postgraduate School, Monterey, CA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Mikhail","family":"Auguston","sequence":"additional","affiliation":[{"name":"Naval Postgraduate School, Monterey, CA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Cynthia E.","family":"Irvine","sequence":"additional","affiliation":[{"name":"Naval Postgraduate School, Monterey, CA"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Timothy E.","family":"Levin","sequence":"additional","affiliation":[{"name":"Naval Postgraduate School, Monterey, CA"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2008,6,7]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"Retrieved","author":"The Alloy Analyzer","year":"2000","unstructured":"The Alloy Analyzer website. ( 2000 ). Retrieved January 11, 2008, from http:\/\/alloy.mit.edu\/. The Alloy Analyzer website. (2000). Retrieved January 11, 2008, from http:\/\/alloy.mit.edu\/."},{"key":"e_1_3_2_1_2_1","volume-title":"MITRE Report","author":"Bell D.","year":"1973","unstructured":"Bell , D. , &amp; LaPadula , L. ( 1973 ). Secure Computer Systems: Mathematical Foundations and Model , MITRE Report . The MITRE Corp . Bell, D., &amp; LaPadula, L. (1973). Secure Computer Systems: Mathematical Foundations and Model, MITRE Report. The MITRE Corp."},{"key":"e_1_3_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.1145\/1030083.1030108"},{"key":"e_1_3_2_1_4_1","volume-title":"Proceedings of the ACM SIGSOFT First Alloy Workshop (pp. 38--47)","author":"Chen C.","year":"2006","unstructured":"Chen , C. , Grisham , P. , Khurshid , S. , &amp; Perry , D. ( 2006 ). Design and validation of a general security model with the alloy analyzer . Proceedings of the ACM SIGSOFT First Alloy Workshop (pp. 38--47) . Chen, C., Grisham, P., Khurshid, S., &amp; Perry, D. (2006). Design and validation of a general security model with the alloy analyzer. Proceedings of the ACM SIGSOFT First Alloy Workshop (pp. 38--47)."},{"key":"e_1_3_2_1_5_1","volume-title":"Part 1: Introduction and General Model, version 3.1. Document number CCMB-2006-09-001","author":"Common Criteria","year":"2006","unstructured":"Common Criteria for Information Technology Security Evaluation , Part 1: Introduction and General Model, version 3.1. Document number CCMB-2006-09-001 . September 2006 . Common Criteria for Information Technology Security Evaluation, Part 1: Introduction and General Model, version 3.1. Document number CCMB-2006-09-001. September 2006."},{"key":"e_1_3_2_1_6_1","volume-title":"December","author":"Department of Defense Trusted Computer Security Evaluation Criteria, DOD 5200.28-STD","year":"1985","unstructured":"Department of Defense Trusted Computer Security Evaluation Criteria, DOD 5200.28-STD , National Computer Security Center , December 1985 . Department of Defense Trusted Computer Security Evaluation Criteria, DOD 5200.28-STD, National Computer Security Center, December 1985."},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1145\/1185448.1185567"},{"key":"e_1_3_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.1145\/360051.360056"},{"key":"e_1_3_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.1145\/359636.359712"},{"key":"e_1_3_2_1_10_1","doi-asserted-by":"publisher","DOI":"10.1145\/1315245.1315284"},{"key":"e_1_3_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1109\/CSFW.1991.151567"},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.1984.10019"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.1982.10014"},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/TSE.1987.226478"},{"key":"e_1_3_2_1_16_1","volume-title":"Software Abstractions: Logic, Language, and Analysis","author":"Jackson D.","year":"2006","unstructured":"Jackson , D. ( 2006 ). Software Abstractions: Logic, Language, and Analysis . Cambridge, MA, USA , and London , England : MIT Press . Jackson, D. (2006). Software Abstractions: Logic, Language, and Analysis. Cambridge, MA, USA, and London, England: MIT Press."},{"key":"e_1_3_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1145\/357369.357374"},{"key":"e_1_3_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.5555\/523511.837884"},{"key":"e_1_3_2_1_19_1","volume-title":"echnical Report No. 1515).","author":"Kruger L.","year":"2004","unstructured":"Kruger , L. , Wang , H. , &amp; Jha , S. ( 2004 ). Towards discovering and containing privacy violations in software ( T echnical Report No. 1515). Madison, WI, USA : University of Wisconsin-Madison . Kruger, L., Wang, H., &amp; Jha, S. (2004). Towards discovering and containing privacy violations in software (Technical Report No. 1515). Madison, WI, USA: University of Wisconsin-Madison."},{"key":"e_1_3_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/362375.362389"},{"key":"e_1_3_2_1_21_1","volume-title":"Proceedings 12 th European Symposium on Programming, ESOP (pp. 159--173)","author":"Laud P.","year":"2003","unstructured":"Laud , P. ( 2003 ). Handling encryption in analyses for secure information flow . Proceedings 12 th European Symposium on Programming, ESOP (pp. 159--173) . Laud, P. (2003). Handling encryption in analyses for secure information flow. Proceedings 12 th European Symposium on Programming, ESOP (pp. 159--173)."},{"key":"e_1_3_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.21236\/ADA435879"},{"key":"e_1_3_2_1_23_1","first-page":"1016","volume-title":"Quality of security service: Adaptive security. Handbook of Information Security","author":"Levin T.","year":"2006","unstructured":"Levin , T. , Irvine , C. , &amp; Spyropoulou , E. ( 2006 ). Quality of security service: Adaptive security. Handbook of Information Security (H. Bidgoli, ed.), vol. 3 , pp. 1016 -- 1025 , Hoboken, NJ : John Wiley and Sons . Levin, T., Irvine, C., &amp; Spyropoulou, E. (2006). Quality of security service: Adaptive security. Handbook of Information Security (H. Bidgoli, ed.), vol. 3, pp. 1016--1025, Hoboken, NJ: John Wiley and Sons."},{"key":"e_1_3_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/RISP.1990.63849"},{"key":"e_1_3_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1109\/32.481534"},{"key":"e_1_3_2_1_26_1","volume-title":"Version 1.0.","author":"National Security Agency IA Directorate.","year":"2004","unstructured":"National Security Agency IA Directorate. ( 2004 ). Global Information Grid Information Assurance Reference Capability\/Technology Roadmap , Version 1.0. National Security Agency IA Directorate. (2004). Global Information Grid Information Assurance Reference Capability\/Technology Roadmap, Version 1.0."},{"key":"e_1_3_2_1_27_1","first-page":"03","article-title":"U.S. Government Protection Profile for Separation Kernels in Environments Requiring High Robustness","volume":"1","author":"National Security Agency.","year":"2007","unstructured":"National Security Agency. ( 2007 ). U.S. Government Protection Profile for Separation Kernels in Environments Requiring High Robustness , Version 1 . 03 . National Security Agency. (2007). U.S. Government Protection Profile for Separation Kernels in Environments Requiring High Robustness, Version 1.03.","journal-title":"Version"},{"key":"e_1_3_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.5555\/882491.884230"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"publisher","DOI":"10.1109\/JSAC.2002.806121"},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.5555\/794200.795151"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/800179.1124633"},{"key":"e_1_3_2_1_33_1","volume-title":"Proceedings of the 7th OOPSLA Workshop on Domain-Specific Modeling (pp. 160--171)","author":"Shaffer A.","year":"2007","unstructured":"Shaffer , A. , Auguston , M. , Irvine , C. and Levin , T . ( 2007 ). Toward a security domain model for static analysis and verification of information systems . Proceedings of the 7th OOPSLA Workshop on Domain-Specific Modeling (pp. 160--171) . Montreal, Canada. Shaffer, A., Auguston, M., Irvine, C. and Levin, T. (2007). Toward a security domain model for static analysis and verification of information systems. Proceedings of the 7th OOPSLA Workshop on Domain-Specific Modeling (pp. 160--171). Montreal, Canada."},{"key":"e_1_3_2_1_34_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-40018-9_19"},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/1180337.1180341"},{"key":"e_1_3_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.5555\/1239319.1239324"},{"key":"e_1_3_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/1255329.1255332"},{"key":"e_1_3_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/32.55086"},{"key":"e_1_3_2_1_39_1","doi-asserted-by":"publisher","DOI":"10.5555\/353594.353608"},{"key":"e_1_3_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.3233\/JCS-1996-42-304"},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-30108-0_14"}],"event":{"name":"PLDI '08: ACM SIGPLAN Conference on Programming Language Design and Implementation","sponsor":["SIGPLAN ACM Special Interest Group on Programming Languages","ACM Association for Computing Machinery"],"location":"Tucson AZ USA","acronym":"PLDI '08"},"container-title":["Proceedings of the third ACM SIGPLAN workshop on Programming languages and analysis for security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1375696.1375703","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/1375696.1375703","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T14:47:18Z","timestamp":1750258038000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/1375696.1375703"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2008,6,7]]},"references-count":39,"alternative-id":["10.1145\/1375696.1375703","10.1145\/1375696"],"URL":"https:\/\/doi.org\/10.1145\/1375696.1375703","relation":{},"subject":[],"published":{"date-parts":[[2008,6,7]]},"assertion":[{"value":"2008-06-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}