Pnueli’s memorial, 9 May 2010
Information-Theoretic approaches to Information Flow
Catuscia Palamidessi INRIA Saclay & Ecole Polytechnique based on joint work with Mário S. Alvim and Miguel E. Andrés
1
Information-Theoretic approaches to Information Flow Catuscia - - PowerPoint PPT Presentation
Information-Theoretic approaches to Information Flow Catuscia Palamidessi INRIA Saclay & Ecole Polytechnique based on joint work with Mrio S. Alvim and Miguel E. Andrs Pnuelis memorial, 9 May 2010 1 The problem Control the
Pnueli’s memorial, 9 May 2010
Catuscia Palamidessi INRIA Saclay & Ecole Polytechnique based on joint work with Mário S. Alvim and Miguel E. Andrés
1
2
whether he should pay for the (whole) bill or
to pay, but they should not know whom
3
cryptographers and toss them
adjacent coins. The payer (if any) adds 1. The results are announced
is a payer
4
message anonymously to another user (dest.)
participate in the protocol.
(forwarder) and forwards the request to him
the message to another forwarder or to dest.
5
Probable innocence: under certain conditions, an attacker who intercepts the message from x cannot attribute more than 0.5 probability to x to be the initiator
a priori probability
researchers got it wrong
6
7
Secret Information
Observables
Observables
Secret Information
Output
11
12
13
14
15
16
17
but no-leakage is expressed as a global property.
based on changing the notion of refinement: bisimulation instead than simulation. The actual implementation would be probabilistic, but it would be viewed as nondeterministic in order to prove bisimulation
18
19