Show simple item record

dc.contributor.authorJackson, Daniel
dc.contributor.authorNear, Joseph Paul
dc.date.accessioned2014-05-09T17:35:48Z
dc.date.available2014-05-09T17:35:48Z
dc.date.issued2012-11
dc.identifier.isbn9781450316149
dc.identifier.urihttp://hdl.handle.net/1721.1/86919
dc.description.abstractRubicon is a verifier for web applications. Specifications are written in an embedded domain-specific language and are checked fully automatically. Rubicon is designed to fit with current practices: its language is based on RSpec, a popular testing framework, and its analysis leverages the standard Ruby interpreter to perform symbolic execution (generating verification conditions that are checked by the Alloy Analyzer). Rubicon has been evaluated on five open-source applications; in one, a widely used customer relationship management system, a previously unknown security flaw was revealed.en_US
dc.description.sponsorshipNational Science Foundation (U.S.) (CRI: CRD - Development of Alloy Technology and Materials Grant 0707612)en_US
dc.language.isoen_US
dc.publisherAssociation for Computing Machinery (ACM)en_US
dc.relation.isversionofhttp://dx.doi.org/10.1145/2393596.2393667en_US
dc.rightsCreative Commons Attribution-Noncommercial-Share Alikeen_US
dc.rights.urihttp://creativecommons.org/licenses/by-nc-sa/4.0/en_US
dc.sourceMIT web domainen_US
dc.titleRubicon: Bounded Verification of Web Applicationsen_US
dc.typeArticleen_US
dc.identifier.citationJoseph P. Near and Daniel Jackson. 2012. Rubicon: bounded verification of web applications. In Proceedings of the ACM SIGSOFT 20th International Symposium on the Foundations of Software Engineering (FSE '12). ACM, New York, NY, USA, Article 60, 11 pages.en_US
dc.contributor.departmentMassachusetts Institute of Technology. Computer Science and Artificial Intelligence Laboratoryen_US
dc.contributor.departmentMassachusetts Institute of Technology. Department of Electrical Engineering and Computer Scienceen_US
dc.contributor.mitauthorNear, Joseph Paulen_US
dc.contributor.mitauthorJackson, Danielen_US
dc.relation.journalProceedings of the ACM SIGSOFT 20th International Symposium on the Foundations of Software Engineering (FSE '12)en_US
dc.eprint.versionAuthor's final manuscripten_US
dc.type.urihttp://purl.org/eprint/type/ConferencePaperen_US
eprint.statushttp://purl.org/eprint/status/NonPeerRevieweden_US
dspace.orderedauthorsNear, Joseph P.; Jackson, Danielen_US
dc.identifier.orcidhttps://orcid.org/0000-0003-4864-078X
mit.licenseOPEN_ACCESS_POLICYen_US
mit.metadata.statusComplete


Files in this item

Thumbnail

This item appears in the following Collection(s)

Show simple item record