|
50 | 50 | Mon Jan 5 2026: Introduction |
51 | 51 | - *Reading*: |
52 | 52 | Wed Jan 7 2026: IFC |
53 | | - - *Reading*: [Language-Based Information-Flow Security](./papers/sm-jsac03) by Andrei Sabelfeld and Andrew C. Myers |
| 53 | + - *Reading*: [Language-Based Information-Flow Security](./papers/sm-jsac03.pdf) by Andrei Sabelfeld and Andrew C. Myers |
54 | 54 | Fri Jan 9 2026: IFC |
55 | | - - *Reading*: [A sound type system for secure flow analysis](./papers/volpano96) by Dennis Volpano, et al. |
| 55 | + - *Reading*: [A sound type system for secure flow analysis](./papers/volpano96.pdf) by Dennis Volpano, et al. |
56 | 56 | Mon Jan 12 2026: IFC |
57 | 57 | - *Reading*: [Flexible Dynamic Information Flow Control in the Presence of Exceptions](https://cseweb.ucsd.edu/~dstefan/pubs/stefan:2017:flexible.pdf) by Deian Stefan, et al. |
58 | 58 | - *Reading (optional)*: [Co-Inflow: Coarse-grained Information Flow Control for Java-like Languages](https://jianxiang.info/pub/SP21.pdf) by Jian Xiang and Stephen Chong |
|
71 | 71 | Wed Jan 28 2026: Crypto |
72 | 72 | - *Reading*: [FaCT: A DSL for timing-sensitive computation](https://cseweb.ucsd.edu/~dstefan/pubs/cauligi:2019:fact.pdf) by Sunjay Cauligi, et al. |
73 | 73 | Fri Jan 30 2026: Crypto |
74 | | - - *Reading (optional):* [Formal Security and Functional Verification of Cryptographic Protocol Implementations in Rust](./papers/bhargavan.pdf) by Karthikeyan Bhargavan, et al. |
| 74 | + - *Reading (optional):* [Formal Security and Functional Verification of Cryptographic Protocol Implementations in Rust](./papers/bhargavan25.pdf) by Karthikeyan Bhargavan, et al. |
75 | 75 | Mon Feb 2 2026: Wasm |
76 | 76 | - *Reading*: [Lightweight, Modular Verification for WebAssembly-to-Native Instruction Selection](./papers/crocus.pdf) by Alexa VanHattum et al. |
77 | 77 | Wed Feb 4 2026: Wasm |
|
102 | 102 | - *Reading*: [Finding Real Bugs in Big Programs with Incorrectness Logic](https://dl.acm.org/doi/epdf/10.1145/3527325) by Quang Loc Le, et al. |
103 | 103 | Fri Mar 6 2026: Static Analysis (cont) |
104 | 104 | - **Due**: Projects updates (game plan for the last stretch) |
105 | | -Mon Mar 9 2026: Fin |
106 | | - - *Reading*: [Automated Policy Synthesis for System Call Sandboxing](./papers/abhaya.pdf) by Shankara Pailoor, et al. |
107 | | -Wed Mar 11 2026: Fin |
| 105 | +Mon Mar 9 2026: Fuzzing |
| 106 | + - *Reading*: [FUZZILLI: Fuzzing for JavaScript JIT Compiler Vulnerabilities](./papers/fuzzilli.pdf) by Samuel Groß, et al. |
| 107 | +Wed Mar 11 2026: TBA |
| 108 | +Fri Mar 13 2026: Fin |
108 | 109 | - *Reading*: [Automated Exploit Generation for Node.js Packages](https://dl.acm.org/doi/epdf/10.1145/3729304) by Filipe Marques, et al. |
109 | | -Fri Mar 13 2026: Fin (cont) |
110 | | - - *Reading (optional)*: [Modular Verification of Secure and Leakage-Free Systems: From Application Specification to Circuit-Level Implementation](./papers/parfait.pdf) by Anish Athalye, et al. |
111 | 110 |
|
112 | 111 | Evaluation |
113 | 112 | ============================================================== |
|
0 commit comments