BugClone: Towards Finding Vulnerable Source Code Clones in Binary Executables
DC Field | Value | Language |
---|---|---|
dc.contributor.author | 오희국 | - |
dc.date.accessioned | 2025-04-01T06:01:25Z | - |
dc.date.available | 2025-04-01T06:01:25Z | - |
dc.date.issued | 2021-06 | - |
dc.identifier.uri | https://scholarworks.bwise.kr/erica/handle/2021.sw.erica/122425 | - |
dc.description.abstract | Vulnerabilities are continuously discovered and common in all software platforms. When some vulnerability is explored at the source code level, there must be a technique to find a similar vulnerable code in binaries; for which source code is not available (firmware, server, etc. binaries). A typical solution would be to compile the vulnerable source code and compare the compiled binary with target binaries. Existing binary code similarity detection techniques are only efficient when both binaries are compiled with the same compilers, architecture, and optimization levels. Different compilers and configurations change with CFG (control flow graph) that eventually makes the comparison error-prone. The main challenge for source-binary similarity detection is that we don’t know the compiler used and its configurations for the target binary and hence the only way is to compile source code with all possible compilation options and compare all resultant binaries with the target binary; which is unrealistic. In this research, we propose a solution to eliminating the many-one comparison by one-one comparison for the source-binary comparison problem. First, we detect the compilation options for the target binary and compile the vulnerable source code using the same compilation configurations. Later, we employ the embedding model-based binary comparison, which is resilient to light compiler optimizations and outcome promising results. | - |
dc.language | 영어 | - |
dc.language.iso | ENG | - |
dc.title | BugClone: Towards Finding Vulnerable Source Code Clones in Binary Executables | - |
dc.type | Conference | - |
dc.citation.title | 한국정보보호학회 하계학술대회 | - |
dc.citation.volume | 31 | - |
dc.citation.number | 1 | - |
dc.citation.startPage | 136 | - |
dc.citation.endPage | 138 | - |
Items in ScholarWorks are protected by copyright, with all rights reserved, unless otherwise indicated.
55 Hanyangdeahak-ro, Sangnok-gu, Ansan, Gyeonggi-do, 15588, Korea+82-31-400-4269 sweetbrain@hanyang.ac.kr
COPYRIGHT © 2021 HANYANG UNIVERSITY. ALL RIGHTS RESERVED.
Certain data included herein are derived from the © Web of Science of Clarivate Analytics. All rights reserved.
You may not copy or re-distribute this material in whole or in part without the prior written consent of Clarivate Analytics.