Quantitative analysis of the leakage of confidential data

Article English OPEN
Hunt, S. ; Clark, D. ; Malacaria, P. (2002)
  • Publisher: Elsevier
  • Journal: Electronic Notes in Theoretical Computer Science (issn: 1571-0661, vol: 59, pp: 238-251)
  • Related identifiers: doi: 10.1016/S1571-0661(04)00290-7
  • Subject: Theoretical Computer Science | Computer Science(all) | QA75

Basic information theory is used to analyse the amount of confidential information which may be leaked by programs written in a very simple imperative language. In particular, a detailed analysis is given of the possible leakage due to equality tests and if statements. The analysis is presented as a set of syntax-directed inference rules and can readily be automated.
