[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] [List Home]
[aspectj-users] Plans for dflow pointcut

Hello, are there are any plans to implement the data flow pointcut as
defined here www.graco.c.u-tokyo.ac.jp/~masuhara/papers/aplas2003.pdf
in AspectJ? This would be an invaluable resource to application
security since large classes of security problems deal with tracing
data from source to sink (e.g. cross site scripting,
SQL/XML/Xpath/Ldap injection, OS interaction vulnerabilities, etc.).

If there are no such plans, is it because there are not enough
resources to work on this? Has there already been a discussion on
implementing dflow pointcut and a decision was made not to implement
it?

Thanks,

-- 
Rohit Sethi
Security Compass
http://www.securitycompass.com