dc.contributor.author | Jackson, Daniel | |
dc.contributor.author | Near, Joseph Paul | |
dc.date.accessioned | 2014-05-09T17:35:48Z | |
dc.date.available | 2014-05-09T17:35:48Z | |
dc.date.issued | 2012-11 | |
dc.identifier.isbn | 9781450316149 | |
dc.identifier.uri | http://hdl.handle.net/1721.1/86919 | |
dc.description.abstract | Rubicon is a verifier for web applications. Specifications are written in an embedded domain-specific language and are checked fully automatically. Rubicon is designed to fit with current practices: its language is based on RSpec, a popular testing framework, and its analysis leverages the standard Ruby interpreter to perform symbolic execution (generating verification conditions that are checked by the Alloy Analyzer). Rubicon has been evaluated on five open-source applications; in one, a widely used customer relationship management system, a previously unknown security flaw was revealed. | en_US |
dc.description.sponsorship | National Science Foundation (U.S.) (CRI: CRD - Development of Alloy Technology and Materials Grant 0707612) | en_US |
dc.language.iso | en_US | |
dc.publisher | Association for Computing Machinery (ACM) | en_US |
dc.relation.isversionof | http://dx.doi.org/10.1145/2393596.2393667 | en_US |
dc.rights | Creative Commons Attribution-Noncommercial-Share Alike | en_US |
dc.rights.uri | http://creativecommons.org/licenses/by-nc-sa/4.0/ | en_US |
dc.source | MIT web domain | en_US |
dc.title | Rubicon: Bounded Verification of Web Applications | en_US |
dc.type | Article | en_US |
dc.identifier.citation | Joseph P. Near and Daniel Jackson. 2012. Rubicon: bounded verification of web applications. In Proceedings of the ACM SIGSOFT 20th International Symposium on the Foundations of Software Engineering (FSE '12). ACM, New York, NY, USA, Article 60, 11 pages. | en_US |
dc.contributor.department | Massachusetts Institute of Technology. Computer Science and Artificial Intelligence Laboratory | en_US |
dc.contributor.department | Massachusetts Institute of Technology. Department of Electrical Engineering and Computer Science | en_US |
dc.contributor.mitauthor | Near, Joseph Paul | en_US |
dc.contributor.mitauthor | Jackson, Daniel | en_US |
dc.relation.journal | Proceedings of the ACM SIGSOFT 20th International Symposium on the Foundations of Software Engineering (FSE '12) | en_US |
dc.eprint.version | Author's final manuscript | en_US |
dc.type.uri | http://purl.org/eprint/type/ConferencePaper | en_US |
eprint.status | http://purl.org/eprint/status/NonPeerReviewed | en_US |
dspace.orderedauthors | Near, Joseph P.; Jackson, Daniel | en_US |
dc.identifier.orcid | https://orcid.org/0000-0003-4864-078X | |
mit.license | OPEN_ACCESS_POLICY | en_US |
mit.metadata.status | Complete | |