Reference. Curbing the Vulnerable Parser: Graded Modal Guardrails for Secure Input Handling
Cite
Cites 29 works (0 here)
External (29)
- Morpheus: Automated Safety Verification of Data-Dependent Parser Combinator Programs (2023)
- Graded modal parsing combinators (2023)
- LangSec: Language-theoretic Security (2023)
- Short Paper: Graded Modal Types for Integrity and Confidentiality (2022)
- 2022 CWE top 25 most dangerous software weaknesses (2022)
- Software memory safety (2022)
- Idris 2: Quantitative Type Theory in Practice (2021)
- Graded modal dependent type theory (2021)
- EverParse: Verified secure Zero-Copy parsers for authenticated message formats (2019)
- Quantitative program reasoning with graded modal types (2019)
- Parse, don't validate (2019)
- Safe Documents (SafeDocs) program (2018)
- Curing the vulnerable parser: Design patterns for secure input handling (2017)
- Linear Haskell: practical linearity in a higher-order polymorphic language (2017)
- Input Handling Done Right: Building Hardened Parsers Using Language-Theoretic Security (2017)
- Weird Machines, Exploitability, and Provable Unexploitability (2017)
- Refinement types for TypeScript (2016)
- The Seven Turrets of Babel: A Taxonomy of LangSec Errors and How to Expunge Them (2016)
- In Search of Shotgun Parsers in Android Applications (2016)
- Functional pearl: two can keep a secret, if one of them uses Haskell (2015)
- Nail: A practical tool for parsing and generating data formats (2014)
- Refinement types for Haskell (2014)
- When Maybe is not good enough (2012)
- Shotgun parsers in the crosshairs (2012)
- Flow Caml in a Nutshell (2003)
- A language-based approach to security (2001)
- Parsec: A practical parser library (2001)
- Language-Based Security (1999)
- A sound type system for secure flow analysis (1996)