Static Verification for Web Scripting Languages

Publié le: 13 novembre 2013
sur la chaîne: UW Video
202
2

Modern web applications are developed largely in so-called "dynamic" or "scripting" languages like JavaScript, PHP, and Python. In addition to being untyped, these languages sport several features -- run-time type tests, value-indexed dictionaries, and dynamic code loading -- that make it easy to rapidly prototype and to glue together applications from disparate components. As applications grow large, however, the lack of static typing makes it difficult to achieve reliability and maintainability. In the first part of this talk, Ravi Chugh, Ph.D student at UC San Diego will present Dependent JavaScript (DJS), a statically typed dialect that facilitates precise reasoning about JavaScript and other web scripting languages In the second part of his talk, Chugh will show how to build on DJS to verify security properties of third-party JavaScript. After describing preliminary experiments that use DJS to author provably-secure JavaScript browser extensions, he will identify several future directions of work that will lead to a platform for fine-grained web security.


Sur cette page du site, vous pouvez voir la vidéo en ligne Static Verification for Web Scripting Languages durée heure minute seconde en bonne qualité , qui a été Téléchargé par l'utilisateur UW Video 13 novembre 2013, Partagez le lien avec vos amis et connaissances, sur youtube cette vidéo a déjà été regardée 202 fois et il a aimé 2 téléspectateurs. Bon visionnage!