Skip to Main content Skip to Navigation
Conference papers

HyLeak: Hybrid Analysis Tool for Information Leakage

Abstract : We present HyLeak, a tool for reasoning about the quantity of information leakage in programs. The tool takes as input the source code of a program and analyzes it to estimate the amount of leaked information measured by mutual information. The leakage estimation is mainly based on a hybrid method that combines precise program analysis with statistical analysis using stochastic program simulation. This way, the tool combines the best of both symbolic and randomized techniques to provide more accurate estimates with cheaper analysis, in comparison with the previous tools using one of the analysis methods alone. HyLeak is publicly available and is able to evaluate the information leakage of randomized programs, even when the secret domain is large. We demonstrate with examples that HyLeaks has the best performance among the tools that are able to analyze randomized programs with similarly high precision of estimates.
Document type :
Conference papers
Complete list of metadata

Cited literature [17 references]  Display  Hide  Download

https://hal.inria.fr/hal-01546817
Contributor : Fabrizio Biondi <>
Submitted on : Monday, June 26, 2017 - 10:10:12 AM
Last modification on : Friday, January 8, 2021 - 3:43:04 AM
Long-term archiving on: : Wednesday, January 17, 2018 - 4:21:06 PM

File

main.pdf
Files produced by the author(s)

Identifiers

  • HAL Id : hal-01546817, version 1

Citation

Fabrizio Biondi, Yusuke Kawamoto, Axel Legay, Louis-Marie Traonouez. HyLeak: Hybrid Analysis Tool for Information Leakage. ATVA 2017 - Fifteenth International Symposium on Automated Technology for Verification and Analysis, Oct 2017, Pune, India. pp.14. ⟨hal-01546817⟩

Share

Metrics

Record views

544

Files downloads

286