Using CQUAL for Static Analysis of Authorization Hook Placement.
Xiaolan ZhangAntony EdwardsTrent JaegerPublished in: USENIX Security Symposium (2002)
Keyphrases
- static analysis
- access control
- dynamic analysis
- source code
- security requirements
- malicious code
- security policies
- symbolic execution
- fine grained
- test generation
- conflict resolution
- test suite
- regular expressions
- role based access control
- java card
- abstract interpretation
- artificial intelligence
- access control policies
- access requests