Preprint on secure composition of network message strings in langs like HTML, SQL

5 views
Skip to first unread message

Mike Samuel

unread,
Apr 24, 2026, 1:42:36 PM (24 hours ago) Apr 24
to friam
I did a brief demo of some work on content composition security at the meeting a month or two back.

Now I have a preprint that I'd love feedback on.

cheers,
mike
sec-comp-paper.pdf

Alan Karp

unread,
Apr 24, 2026, 4:37:26 PM (21 hours ago) Apr 24
to fr...@googlegroups.com
I only read enough to get an idea of what you're doing.  My first reaction was that everyone works for a company named Elided.  Then I learned that you have a time machine that can get you to a conference in 2017 (or 1917?).

More seriously, your figure 1 doesn't show the Java code.

--------------
Alan Karp


--
You received this message because you are subscribed to the Google Groups "friam" group.
To unsubscribe from this group and stop receiving emails from it, send an email to friam+un...@googlegroups.com.
To view this discussion visit https://groups.google.com/d/msgid/friam/ec6cc275-163b-439c-83ea-5186ffe33750n%40googlegroups.com.

Mike Samuel

unread,
Apr 24, 2026, 8:24:12 PM (17 hours ago) Apr 24
to friam
Thanks for catching that, Alan. I had skragged some macro that sets the conference.  Now it says 2018 / Woodstock NY which isn't much better but which is what it's supposed to say barring acceptance.

The Figure 1 I have is screenshotted.  Below the line is the Java code which starts off with `var` because that's the declaration with type inference keyword Java adopted recently.  Fixing to top/bottom.
Screenshot 2026-04-24 at 6.20.37 pm.png
Reply all
Reply to author
Forward
0 new messages