Evaluation of Static Vulnerability Detection Tools With Java Cryptographic API Benchmarks

Author:

Afrose Sharmin1ORCID,Xiao Ya1,Rahaman Sazzadur2,Miller Barton P.3ORCID,Yao Danfeng1ORCID

Affiliation:

1. Department of Computer Science, Virginia Tech, Blacksburg, VA, USA

2. Department of Computer Science, University of Arizona, Tucson, AZ, USA

3. Computer Sciences Department, University of Wisconsin-Madison, Madison, WI, USA

Funder

National Science Foundation

Virginia Commonwealth Cyber Initiative

Publisher

Institute of Electrical and Electronics Engineers (IEEE)

Subject

Software

Reference63 articles.

1. CrySL: An extensible approach to validating the correct usage of cryptographic APIs;krüger;Proc Eur Conf Object-Oriented Program,2018

2. Towards a framework and a benchmark for testing tools for multi-threaded programs

3. CogniCrypt: Supporting developers in using cryptography

4. Benchmark and framework for encouraging research on multi-threaded testing tools

5. CRYLOGGER: Detecting crypto misuses dynamically;piccolboni,2020

Cited by 21 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Time to separate from StackOverflow and match with ChatGPT for encryption;Journal of Systems and Software;2024-10

2. Software installation threat detection based on attention mechanism and improved convolutional neural network in IOT platform;Engineering Research Express;2024-07-18

3. Effectiveness of ChatGPT for Static Analysis: How Far Are We?;Proceedings of the 1st ACM International Conference on AI-Powered Software;2024-07-10

4. An Investigation into Misuse of Java Security APIs by Large Language Models;Proceedings of the 19th ACM Asia Conference on Computer and Communications Security;2024-07

5. LLM Security Guard for Code;Proceedings of the 28th International Conference on Evaluation and Assessment in Software Engineering;2024-06-18

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3