2017 IEEE Symposium on Security and Privacy (SP) 2017
DOI: 10.1109/sp.2017.24
|View full text |Cite
|
Sign up to set email alerts
|

CoSMeDis: A Distributed Social Media Platform with Formally Verified Confidentiality Guarantees

Abstract: Abstract-We present the design, implementation and information flow verification of CoSMeDis, a distributed social media platform. The system consists of an arbitrary number of communicating nodes, deployable at different locations over the Internet. Its registered users can post content and establish intra-node and inter-node friendships, used to regulate access control over the posts. The system's kernel has been verified in the proof assistant Isabelle/HOL and automatically extracted as Scala code. We forma… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
1
1
1

Citation Types

0
13
0

Year Published

2017
2017
2020
2020

Publication Types

Select...
3
3
1

Relationship

2
5

Authors

Journals

citations
Cited by 17 publications
(13 citation statements)
references
References 52 publications
0
13
0
Order By: Relevance
“…Δ 3 : Both the paper and its N'th review are registered and the phase is Reviewing; now the two states can diverge on the content of the review. Δ 4 : The phase is either Reviewing or higher (e.g., Discussion), both traces have exhausted their Reviewing-tagged secrets, meaning that the remaining to-be-produced secrets must be Discussion-tagged 6 and are required to be equal; now the states must be equal too.…”
Section: Verification Of the Concrete Instancesmentioning
confidence: 99%
“…Δ 3 : Both the paper and its N'th review are registered and the phase is Reviewing; now the two states can diverge on the content of the review. Δ 4 : The phase is either Reviewing or higher (e.g., Discussion), both traces have exhausted their Reviewing-tagged secrets, meaning that the remaining to-be-produced secrets must be Discussion-tagged 6 and are required to be equal; now the states must be equal too.…”
Section: Verification Of the Concrete Instancesmentioning
confidence: 99%
“…For highlighting the issue of privacy leakage, an inference attack for leakage of data privacy is introduced. A new approach known as PbD (Privacy by Design) principles is introduced for OSNs in distributed computing environments [32], instead of any framework or technique, it pointed out the lack of proper PIA (Privacy Impact Assessment) [33]. Authentication and access control always remained the core area of research in every computing system development [34], [35].…”
Section: B Osns Modelsmentioning
confidence: 99%
“…Formalizations in Isabelle of end-user-facing applications have been studied for distributed applications [8] and conference management systems [19]. However, only the respective core of the server is verified.…”
Section: Related Workmentioning
confidence: 99%