Intelligent vulnerability detection system based on graph structured source code slice

For the intelligent vulnerability detection, the system extracts the graph structured source code slices according to the vulnerability characteristics from the program dependency graph of source code, and then presents the graph structured slice information to carry out vulnerability detection by u...

Full description

Saved in:
Bibliographic Details
Main Authors: Deqing ZOU, Xiang LI, Minhuan HUANG, Xiang SONG, Hao LI, Weiming LI
Format: Article
Language:English
Published: POSTS&TELECOM PRESS Co., LTD 2021-10-01
Series:网络与信息安全学报
Subjects:
Online Access:http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021088
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1841529839250571264
author Deqing ZOU
Xiang LI
Minhuan HUANG
Xiang SONG
Hao LI
Weiming LI
author_facet Deqing ZOU
Xiang LI
Minhuan HUANG
Xiang SONG
Hao LI
Weiming LI
author_sort Deqing ZOU
collection DOAJ
description For the intelligent vulnerability detection, the system extracts the graph structured source code slices according to the vulnerability characteristics from the program dependency graph of source code, and then presents the graph structured slice information to carry out vulnerability detection by using the graph neural network model.Slice level vulnerability detection was realized and the vulnerability line was located at the code line level.In order to verify the effectiveness of the system, compared with the static vulnerability detection systems, the vulnerability detection system based on serialized text information, and the vulnerability detection system based on graph structured information, the experimental results show that the proposed system has a high accuracy in the vulnerability detection capability and a good performance in the vulnerability code line prediction.
format Article
id doaj-art-ea0694eaa8ec4a44bc661c817fc0e577
institution Kabale University
issn 2096-109X
language English
publishDate 2021-10-01
publisher POSTS&TELECOM PRESS Co., LTD
record_format Article
series 网络与信息安全学报
spelling doaj-art-ea0694eaa8ec4a44bc661c817fc0e5772025-01-15T03:15:15ZengPOSTS&TELECOM PRESS Co., LTD网络与信息安全学报2096-109X2021-10-01711312259568926Intelligent vulnerability detection system based on graph structured source code sliceDeqing ZOUXiang LIMinhuan HUANGXiang SONGHao LIWeiming LIFor the intelligent vulnerability detection, the system extracts the graph structured source code slices according to the vulnerability characteristics from the program dependency graph of source code, and then presents the graph structured slice information to carry out vulnerability detection by using the graph neural network model.Slice level vulnerability detection was realized and the vulnerability line was located at the code line level.In order to verify the effectiveness of the system, compared with the static vulnerability detection systems, the vulnerability detection system based on serialized text information, and the vulnerability detection system based on graph structured information, the experimental results show that the proposed system has a high accuracy in the vulnerability detection capability and a good performance in the vulnerability code line prediction.http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021088vulnerability detectiongraph structurecode slicedeep learning
spellingShingle Deqing ZOU
Xiang LI
Minhuan HUANG
Xiang SONG
Hao LI
Weiming LI
Intelligent vulnerability detection system based on graph structured source code slice
网络与信息安全学报
vulnerability detection
graph structure
code slice
deep learning
title Intelligent vulnerability detection system based on graph structured source code slice
title_full Intelligent vulnerability detection system based on graph structured source code slice
title_fullStr Intelligent vulnerability detection system based on graph structured source code slice
title_full_unstemmed Intelligent vulnerability detection system based on graph structured source code slice
title_short Intelligent vulnerability detection system based on graph structured source code slice
title_sort intelligent vulnerability detection system based on graph structured source code slice
topic vulnerability detection
graph structure
code slice
deep learning
url http://www.cjnis.com.cn/thesisDetails#10.11959/j.issn.2096-109x.2021088
work_keys_str_mv AT deqingzou intelligentvulnerabilitydetectionsystembasedongraphstructuredsourcecodeslice
AT xiangli intelligentvulnerabilitydetectionsystembasedongraphstructuredsourcecodeslice
AT minhuanhuang intelligentvulnerabilitydetectionsystembasedongraphstructuredsourcecodeslice
AT xiangsong intelligentvulnerabilitydetectionsystembasedongraphstructuredsourcecodeslice
AT haoli intelligentvulnerabilitydetectionsystembasedongraphstructuredsourcecodeslice
AT weimingli intelligentvulnerabilitydetectionsystembasedongraphstructuredsourcecodeslice