BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//Talks.cam//talks.cam.ac.uk//
X-WR-CALNAME:Talks.cam
BEGIN:VEVENT
SUMMARY:Language based web security: the operational semantics approach - 
 Sergio Maffeis\, Imperial College
DTSTART:20131122T160000Z
DTEND:20131122T170000Z
UID:TALK49006@talks.cam.ac.uk
CONTACT:Microsoft Research Cambridge Talks Admins
DESCRIPTION:The goal of language based security is to develop applications
  that are provably secure by design. My recent research has focused on the
  development of programming-language and program-analysis techniques for e
 nforcing web application security.\nIn this talk I will describe the path 
 from web technologies to formal models\, and ultimately to security proofs
 . I will focus on two complementary JavaScript-related examples that lead 
 to the discovery of fresh vulnerabilities in widely deployed web applicati
 ons\, such as Facebook\, Yahoo!\, FireFox\, LastPass. These examples motiv
 ate an ongoing effort to mechanize the semantics of web programming langua
 ges: I will report on our progress on this front.
LOCATION:Auditorium\, Microsoft Research Ltd\, 21 Station Road\, Cambridge
 \, CB1 2FB
END:VEVENT
END:VCALENDAR
