2019
DOI: 10.1109/access.2019.2911592
|View full text |Cite
|
Sign up to set email alerts
|

Inferring Patterns for Taint-Style Vulnerabilities With Security Patches

Abstract: Taint-style vulnerabilities can damage the service provided by mobile seriously. The patternbased method is a practical way to detect taint-style vulnerabilities. Most of the methods extract the vulnerability patterns from the code base, however, sometimes missing the vulnerability patterns and resulting in some vulnerabilities undiscovered. The security patches contain valuable information about the vulnerabilities. To compensate for the inherent incompleteness of pattern matching, in this paper, we propose a… Show more

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
1

Citation Types

0
1
0

Year Published

2021
2021
2022
2022

Publication Types

Select...
2
1

Relationship

0
3

Authors

Journals

citations
Cited by 3 publications
(1 citation statement)
references
References 31 publications
0
1
0
Order By: Relevance
“…While much effort has been spent on automatically proposing relevant sources, sanitizers, and sinks (Piskachev et al, 2019;Arzt et al, 2013;Sas et al, 2018) or inference of taint-flows (source-sanitizer-sink paths) (Livshits et al, 2009;Chibotaru et al, 2019;Song et al, 2019), in practice taint analyses still require substantial manual specification effort.…”
Section: Introductionmentioning
confidence: 99%
“…While much effort has been spent on automatically proposing relevant sources, sanitizers, and sinks (Piskachev et al, 2019;Arzt et al, 2013;Sas et al, 2018) or inference of taint-flows (source-sanitizer-sink paths) (Livshits et al, 2009;Chibotaru et al, 2019;Song et al, 2019), in practice taint analyses still require substantial manual specification effort.…”
Section: Introductionmentioning
confidence: 99%