## Belief in information flow (2005)

Venue: | In Proc. 18th IEEE Computer Security Foundations Workshop |

Citations: | 53 - 9 self |

@INPROCEEDINGS{Clarkson05beliefin,

author = {Michael R. Clarkson and Andrew C. Myers and Fred B. Schneider},

title = {Belief in information flow},

booktitle = {In Proc. 18th IEEE Computer Security Foundations Workshop},

year = {2005},

pages = {31--45}

}

Information leakage traditionally has been defined to occur when uncertainty about secret data is reduced. This uncertainty-based approach is inadequate for measuring information flow when an attacker is making assumptions about secret inputs and these assumptions might be incorrect; such attacker beliefs are an unavoidable aspect of any satisfactory definition of leakage. To reason about information flow based on beliefs, a model is developed that describes how attacker beliefs change due to the attacker’s observation of the execution of a probabilistic (or deterministic) program. The model leads to a new metric for quantitative information flow that measures accuracy rather than uncertainty of beliefs. 1.

