{"id":"https://openalex.org/W2307994931","doi":"https://doi.org/10.3233/jcs-160544","title":"Information-flow security for JavaScript and\u00a0its APIs","display_name":"Information-flow security for JavaScript and\u00a0its APIs","publication_year":2016,"publication_date":"2016-02-22","ids":{"openalex":"https://openalex.org/W2307994931","doi":"https://doi.org/10.3233/jcs-160544","mag":"2307994931"},"language":"en","primary_location":{"id":"doi:10.3233/jcs-160544","is_oa":false,"landing_page_url":"https://doi.org/10.3233/jcs-160544","pdf_url":null,"source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5079303722","display_name":"Daniel Hedin","orcid":"https://orcid.org/0000-0002-6621-8390"},"institutions":[{"id":"https://openalex.org/I66862912","display_name":"Chalmers University of Technology","ror":"https://ror.org/040wg7k59","country_code":"SE","type":"education","lineage":["https://openalex.org/I66862912"]},{"id":"https://openalex.org/I82509713","display_name":"M\u00e4lardalen University","ror":"https://ror.org/033vfbz75","country_code":"SE","type":"education","lineage":["https://openalex.org/I82509713"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Daniel Hedin","raw_affiliation_strings":["Department of Computer Science and Engineering, Chalmers University of Technology, R\u00e4nnv\u00e4gen 6B, 41296 Gothenburg, Sweden","School of Innovation, Design and Engineering, M\u00e4lardalen University, Box 883, 721 23 V\u00e4ster\u00e5s, Sweden"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, Chalmers University of Technology, R\u00e4nnv\u00e4gen 6B, 41296 Gothenburg, Sweden","institution_ids":["https://openalex.org/I66862912"]},{"raw_affiliation_string":"School of Innovation, Design and Engineering, M\u00e4lardalen University, Box 883, 721 23 V\u00e4ster\u00e5s, Sweden","institution_ids":["https://openalex.org/I82509713"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5025924519","display_name":"Luciano Bello","orcid":"https://orcid.org/0000-0002-3530-6283"},"institutions":[{"id":"https://openalex.org/I66862912","display_name":"Chalmers University of Technology","ror":"https://ror.org/040wg7k59","country_code":"SE","type":"education","lineage":["https://openalex.org/I66862912"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Luciano Bello","raw_affiliation_strings":["Department of Computer Science and Engineering, Chalmers University of Technology, R\u00e4nnv\u00e4gen 6B, 41296 Gothenburg, Sweden"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, Chalmers University of Technology, R\u00e4nnv\u00e4gen 6B, 41296 Gothenburg, Sweden","institution_ids":["https://openalex.org/I66862912"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5070340953","display_name":"Andrei Sabelfeld","orcid":null},"institutions":[{"id":"https://openalex.org/I66862912","display_name":"Chalmers University of Technology","ror":"https://ror.org/040wg7k59","country_code":"SE","type":"education","lineage":["https://openalex.org/I66862912"]}],"countries":["SE"],"is_corresponding":true,"raw_author_name":"Andrei Sabelfeld","raw_affiliation_strings":["Department of Computer Science and Engineering, Chalmers University of Technology, R\u00e4nnv\u00e4gen 6B, 41296 Gothenburg, Sweden"],"affiliations":[{"raw_affiliation_string":"Department of Computer Science and Engineering, Chalmers University of Technology, R\u00e4nnv\u00e4gen 6B, 41296 Gothenburg, Sweden","institution_ids":["https://openalex.org/I66862912"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":3,"corresponding_author_ids":["https://openalex.org/A5070340953"],"corresponding_institution_ids":["https://openalex.org/I66862912"],"apc_list":null,"apc_paid":null,"fwci":5.7643,"has_fulltext":false,"cited_by_count":22,"citation_normalized_percentile":{"value":0.96111848,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":90,"max":98},"biblio":{"volume":"24","issue":"2","first_page":"181","last_page":"234"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11424","display_name":"Security and Verification in Computing","score":1.0,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9945999979972839,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12479","display_name":"Web Application Security Vulnerabilities","score":0.9889000058174133,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/javascript","display_name":"JavaScript","score":0.8786176443099976},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8468921184539795},{"id":"https://openalex.org/keywords/unobtrusive-javascript","display_name":"Unobtrusive JavaScript","score":0.8045952320098877},{"id":"https://openalex.org/keywords/scripting-language","display_name":"Scripting language","score":0.6173136830329895},{"id":"https://openalex.org/keywords/interpreter","display_name":"Interpreter","score":0.5134321451187134},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.5130437612533569},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.4431948959827423},{"id":"https://openalex.org/keywords/information-flow","display_name":"Information flow","score":0.4418409466743469},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.35950928926467896},{"id":"https://openalex.org/keywords/rich-internet-application","display_name":"Rich Internet application","score":0.2838527262210846}],"concepts":[{"id":"https://openalex.org/C544833334","wikidata":"https://www.wikidata.org/wiki/Q2005","display_name":"JavaScript","level":2,"score":0.8786176443099976},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8468921184539795},{"id":"https://openalex.org/C198240166","wikidata":"https://www.wikidata.org/wiki/Q2298909","display_name":"Unobtrusive JavaScript","level":4,"score":0.8045952320098877},{"id":"https://openalex.org/C61423126","wikidata":"https://www.wikidata.org/wiki/Q187432","display_name":"Scripting language","level":2,"score":0.6173136830329895},{"id":"https://openalex.org/C122783720","wikidata":"https://www.wikidata.org/wiki/Q183065","display_name":"Interpreter","level":2,"score":0.5134321451187134},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.5130437612533569},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.4431948959827423},{"id":"https://openalex.org/C2779136372","wikidata":"https://www.wikidata.org/wiki/Q10283002","display_name":"Information flow","level":2,"score":0.4418409466743469},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.35950928926467896},{"id":"https://openalex.org/C103048170","wikidata":"https://www.wikidata.org/wiki/Q725485","display_name":"Rich Internet application","level":3,"score":0.2838527262210846},{"id":"https://openalex.org/C138885662","wikidata":"https://www.wikidata.org/wiki/Q5891","display_name":"Philosophy","level":0,"score":0.0},{"id":"https://openalex.org/C41895202","wikidata":"https://www.wikidata.org/wiki/Q8162","display_name":"Linguistics","level":1,"score":0.0}],"mesh":[],"locations_count":3,"locations":[{"id":"doi:10.3233/jcs-160544","is_oa":false,"landing_page_url":"https://doi.org/10.3233/jcs-160544","pdf_url":null,"source":{"id":"https://openalex.org/S106992369","display_name":"Journal of Computer Security","issn_l":"0926-227X","issn":["0926-227X","1875-8924"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310318577","host_organization_name":"IOS Press","host_organization_lineage":["https://openalex.org/P4310318577"],"host_organization_lineage_names":["IOS Press"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Journal of Computer Security","raw_type":"journal-article"},{"id":"pmh:oai:publications.lib.chalmers.se:239286","is_oa":false,"landing_page_url":"http://publications.lib.chalmers.se/publication/239286-information-flow-security-for-javascript-and-its-apis","pdf_url":null,"source":{"id":"https://openalex.org/S4377196470","display_name":"Chalmers Publication Library (Chalmers University of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I66862912","host_organization_name":"Chalmers University of Technology","host_organization_lineage":["https://openalex.org/I66862912"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":"Text.Article.Journal.PeerReviewed"},{"id":"pmh:oai:research.chalmers.se:239286","is_oa":false,"landing_page_url":"https://research.chalmers.se/en/publication/239286","pdf_url":null,"source":{"id":"https://openalex.org/S4306402469","display_name":"Chalmers Research (Chalmers University of Technology)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I66862912","host_organization_name":"Chalmers University of Technology","host_organization_lineage":["https://openalex.org/I66862912"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"","raw_type":""}],"best_oa_location":null,"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.5199999809265137,"display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"pdf":false,"grobid_xml":false},"content_urls":null,"referenced_works_count":67,"referenced_works":["https://openalex.org/W32616104","https://openalex.org/W63895107","https://openalex.org/W105715719","https://openalex.org/W114581357","https://openalex.org/W131515753","https://openalex.org/W1146933715","https://openalex.org/W1222699389","https://openalex.org/W1523697553","https://openalex.org/W1557847811","https://openalex.org/W1569728954","https://openalex.org/W1597778235","https://openalex.org/W1725973462","https://openalex.org/W1839269954","https://openalex.org/W1969883639","https://openalex.org/W1977764760","https://openalex.org/W1982042804","https://openalex.org/W1984440144","https://openalex.org/W1994197051","https://openalex.org/W1995290095","https://openalex.org/W1998180710","https://openalex.org/W2008332764","https://openalex.org/W2016587549","https://openalex.org/W2016604944","https://openalex.org/W2027146564","https://openalex.org/W2027822753","https://openalex.org/W2039999720","https://openalex.org/W2043676331","https://openalex.org/W2060857434","https://openalex.org/W2061056245","https://openalex.org/W2065076704","https://openalex.org/W2066195326","https://openalex.org/W2075849836","https://openalex.org/W2081377878","https://openalex.org/W2082841864","https://openalex.org/W2085939020","https://openalex.org/W2094873755","https://openalex.org/W2095881341","https://openalex.org/W2101678831","https://openalex.org/W2112459589","https://openalex.org/W2118431434","https://openalex.org/W2121780525","https://openalex.org/W2122049982","https://openalex.org/W2123582298","https://openalex.org/W2128282420","https://openalex.org/W2129278597","https://openalex.org/W2132733485","https://openalex.org/W2136887296","https://openalex.org/W2138552494","https://openalex.org/W2146717998","https://openalex.org/W2150174204","https://openalex.org/W2152734828","https://openalex.org/W2153684747","https://openalex.org/W2155735696","https://openalex.org/W2159764755","https://openalex.org/W2160804322","https://openalex.org/W2162755110","https://openalex.org/W2165304392","https://openalex.org/W2167004108","https://openalex.org/W2174461360","https://openalex.org/W2193270772","https://openalex.org/W2296605318","https://openalex.org/W2307994931","https://openalex.org/W3010249406","https://openalex.org/W3105116128","https://openalex.org/W4206358530","https://openalex.org/W4238033972","https://openalex.org/W4247465700"],"related_works":["https://openalex.org/W650647575","https://openalex.org/W2476571673","https://openalex.org/W2472584751","https://openalex.org/W597036300","https://openalex.org/W827014118","https://openalex.org/W2737557375","https://openalex.org/W648161522","https://openalex.org/W2937855189","https://openalex.org/W605139400","https://openalex.org/W2164032016"],"abstract_inverted_index":{"JavaScript":[0,68,130],"drives":[1],"the":[2,5,45,73,76,114,168,178,184],"evolution":[3],"of":[4,42,85,125,146],"web":[6,13,27],"into":[7,29],"a":[8,40,56,83,98,118,140],"powerful":[9],"application":[10],"platform.":[11],"Increasingly,":[12],"applications":[14],"combine":[15],"services":[16,31,161],"from":[17,34],"different":[18,155,164],"providers.":[19],"The":[20],"script":[21,61],"inclusion":[22,38],"mechanism":[23,58],"routinely":[24],"turns":[25],"barebone":[26],"pages":[28],"full-fledged":[30],"built":[32],"up":[33],"third-party":[35,47,150],"code.":[36],"Script":[37],"poses":[39],"challenge":[41],"ensuring":[43],"that":[44,81,102,154],"integrated":[46],"code":[48,94],"respects":[49],"security":[50,105,165],"and":[51,69,92,131],"privacy.":[52],"This":[53],"paper":[54,77,115],"presents":[55,116],"dynamic":[57,87,93,99],"for":[59,106,122,167],"securing":[60],"executions":[62],"by":[63,149],"tracking":[64,124],"information":[65,126,147],"flow":[66,127],"in":[67,128],"its":[70,132],"APIs.":[71,133],"On":[72],"formal":[74,112],"side,":[75],"identifies":[78],"language":[79],"constructs":[80],"constitute":[82],"core":[84],"JavaScript:":[86],"objects,":[88],"higher-order":[89],"functions,":[90],"exceptions,":[91],"evaluation.":[95],"It":[96],"develops":[97],"type":[100],"system":[101],"guarantees":[103],"information-flow":[104],"this":[107,111],"language.":[108],"Based":[109],"on":[110],"model,":[113],"JSFlow,":[117],"practical":[119],"security-enhanced":[120],"interpreter":[121],"fine-grained":[123],"full":[129],"Our":[134],"experiments":[135],"with":[136,183],"JSFlow":[137],"deployed":[138],"as":[139],"browser":[141],"extension":[142],"provide":[143,159],"in-depth":[144],"understanding":[145],"manipulation":[148],"scripts.":[151],"We":[152],"find":[153],"sites":[156],"intended":[157],"to":[158,193],"similar":[160],"effectuate":[162],"rather":[163],"policies":[166],"user\u2019s":[169],"sensitive":[170],"information:":[171],"some":[172],"ensure":[173],"it":[174,182,192],"does":[175],"not":[176],"leave":[177],"browser,":[179],"others":[180,189],"share":[181],"originating":[185],"server,":[186],"while":[187],"yet":[188],"freely":[190],"propagate":[191],"third":[194],"parties.":[195]},"counts_by_year":[{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":2},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":3},{"year":2019,"cited_by_count":3},{"year":2018,"cited_by_count":5},{"year":2017,"cited_by_count":4},{"year":2016,"cited_by_count":1}],"updated_date":"2026-04-04T16:13:02.066488","created_date":"2025-10-10T00:00:00"}
