• Complex
  • Title
  • Keyword
  • Abstract
  • Scholars
  • Journal
  • ISSN
  • Conference
搜索

Author:

Chen, Shengquan (Chen, Shengquan.) | Jiang, Nan (Jiang, Nan.) | Wu, Zheng (Wu, Zheng.) | Wang, Zichen (Wang, Zichen.)

Indexed by:

EI Scopus

Abstract:

Software vulnerabilities will make the system vulnerable to attack, affect the reliability of the software and cause information leakage, which will have a huge impact on enterprises or individuals. Vulnerabilities are inevitable in software development engineering. Therefore, relying on some methods or tools for continuous vulnerability analysis of code is the solution to minimize software vulnerabilities. We propose a neural network model - JSVulExplorer for static vulnerability analysis of the dynamic programming language JavaScript. The JSVulExplorer focuses on feature enhancement of data. We use pre-training to learn the semantic similarity between code slices, utilize abstract syntax trees to generate path information, and design positional encoding to use the path information. Based on transfer learning, we combine the pre-trained model with path information to improve vulnerability detection performance. Experiments show that JSVulExplorer has significantly improved precision and recall compared to previous models. It is verified that the dynamic event-based programming language can also use the static analysis method for vulnerability detection. © 2023 SPIE.

Keyword:

Software reliability Learning systems High level languages Codes (symbols) Network security Trees (mathematics) Software design Deep learning Static analysis Semantics

Author Community:

  • [ 1 ] [Chen, Shengquan]Faculty of Information Technology, Beijing University of Technology, Beijing; 100124, China
  • [ 2 ] [Chen, Shengquan]Beijing Key Laboratory of Trusted Computing, Beijing; 100124, China
  • [ 3 ] [Jiang, Nan]Faculty of Information Technology, Beijing University of Technology, Beijing; 100124, China
  • [ 4 ] [Wu, Zheng]Faculty of Information Technology, Beijing University of Technology, Beijing; 100124, China
  • [ 5 ] [Wang, Zichen]Faculty of Information Technology, Beijing University of Technology, Beijing; 100124, China

Reprint Author's Address:

Email:

Show more details

Related Keywords:

Related Article:

Source :

ISSN: 0277-786X

Year: 2023

Volume: 12566

Language: English

Cited Count:

WoS CC Cited Count:

SCOPUS Cited Count:

ESI Highly Cited Papers on the List: 0 Unfold All

WanFang Cited Count:

Chinese Cited Count:

30 Days PV: 0

Affiliated Colleges:

Online/Total:288/5466808
Address:BJUT Library(100 Pingleyuan,Chaoyang District,Beijing 100124, China Post Code:100124) Contact Us:010-67392185
Copyright:BJUT Library Technical Support:Beijing Aegean Software Co., Ltd.