The use of machine learning with signal- and NLP processing of source code to fingerprint, detect, and classify vulnerabilities and weaknesses with MARFCAT
arXiv:1010.2511
Abstract
We present a machine learning approach to static code analysis and fingerprinting for weaknesses related to security, software engineering, and others using the open-source MARF framework and the MARFCAT application based on it for the NIST's SATE2010 static analysis tool exposition workshop found at http://samate.nist.gov/SATE2010Workshop.html
33 pages, 11 tables; some results presented at SATE2010; NIST, October 2011; shorter version of v5 appears in the NIST technical report at http://samate.nist.gov/docs/NIST_Special_Publication_500-283.pdf#page=49 where its presentation is found at http://samate.nist.gov/docs/SATE2010/SATE10_13_Marfcat_Mokhov.pdf and the MARFCAT OSS release at http://sourceforge.net/projects/marf/files/Applications/MARFCAT/
Cited by in corpus (5)
- Towards Refactoring the DMF to Support Jini and JMS DMS in GIPSY
- Intensional Cyberforensics
- MARFCAT: Transitioning to Binary and Larger Data Sets of SATE IV
- OCT Segmentation Survey and Summary Reviews and a Novel 3D Segmentation Algorithm and a Proof of Concept Implementation
- An Interactive Graph-Based Automation Assistant: A Case Study to Manage the GIPSY's Distributed Multi-tier Run-Time System