Source code and binary level vulnerability detection and hot patching

Autor: Zhengzi Xu
Rok vydání: 2020
Předmět:
Zdroj: ASE
DOI: 10.1145/3324884.3418914
Popis: This paper presents a static vulnerability detection and patching framework at both source code and binary level. It automatically identifies and collects known vulnerability information to build the signature. It matches vulnerable functions with similar signatures and filters out the ones that have been patched in the target program. For the vulnerable functions, the framework tries to generate hot patches by learning from the source code.
Databáze: OpenAIRE