arrow
返回

VulANalyzeR: Explainable Binary Vulnerability Detection with Multi-task Learning and Attentional Graph Convolution

delete2023-04-14
delete8
PRE
AI
L
Litao Li *
S
Steven H. H. Ding
Y
Yuan Tian
B
Benjamin C. M. Fung
P
Philippe Charland
W
Weihan Ou
C
Congwei Chen
DOI:10.1145/3585386delete
delete原文链接
delete原文求助
delete分享
delete收藏
摘要

摘要

En 中文
Software vulnerabilities have been posing tremendous reliability threats to the general public as well as critical infrastructures, and there have been many studies aiming to detect and mitigate software defects at the binary level. Most of the standard practices leverage both static and dynamic analysis, which have several drawbacks like heavy manual workload and high complexity. Existing deep learning-based solutions not only suffer to capture the complex relationships among different variables from raw binary code but also lack the explainability required for humans to verify, evaluate, and patch the detected bugs. We propose VulANalyzeR, a deep learning-based model, for automated binary vulnerability detection, Common Weakness Enumeration-type classification, and root cause analysis to enhance safety and security. VulANalyzeR features sequential and topological learning through recurrent units and graph convolution to simulate how a program is executed. The attention mechanism is integrated throughout the model, which shows how different instructions and the corresponding states contribute to the final classification. It also classifies the specific vulnerability type through multi-task learning as this not only provides further explanation but also allows faster patching for zero-day vulnerabilities. We show that VulANalyzeR achieves better performance for vulnerability detection over the state-of-the-art baselines. Additionally, a Common Vulnerability Exposure dataset is used to evaluate real complex vulnerabilities. We conduct case studies to show that VulANalyzeR is able to accurately identify the instructions and basic blocks that cause the vulnerability even without given any prior knowledge related to the locations during the training phase.
Keyword:
Binary vulnerability detection
multi-task deep learning
attentional GCNN
explainability

期刊

A
ACM Transactions on Privacy and Security
IF:
2.8
论文数:
293
被引数:
770

机构

Q
queens university - canada
学者数:
1.8W
论文数: 1.7W
被引数: 29
M
McGill University
学者数:
5.5W
论文数: 4.9W
被引数: 7.0W
引用论文

引用论文

Spiking Suppression Precedes Cued Attentional Enhancement of Neural Responses in Primary Visual Cortex
err2017-11-23
err0
errOAAI
errMichele A Cox; Kacie Dougherty; Geoffrey K Adams; Eric A Reavis; Jacob A Westerberg; Brandon S Moore; David A Leopold; Alexander Maier
err分享
err收藏
err分享
err收藏
Multitask learning多任务学习
err1997-01-01
err4.9K
errOAAI
errCaruana, R
err分享
err收藏
Learning Graph Representation With Generative Adversarial Nets
err2021-08-01
err59
PREAI
errWang, Hongwei; Wang, Jialin; Wang, Jia; Zhao, Miao; Zhang, Weinan; Zhang, Fuzheng; Li, Wenjie; Xie, Xing; Guo, Minyi
err分享
err收藏
Deep Inductive Graph Representation Learning
err2020-03-01
err54
errOAAI
errRossi, Ryan A.; Zhou, Rong; Ahmed, Nesreen K.
err分享
err收藏
VULCON: A System for Vulnerability Prioritization, Mitigation, and Management
err2018-06-12
err53
errOAAI
errFarris, Katheryn A.; Shah, Ankit; Cybenko, George; Ganesan, Rajesh; Jajodia, Sushil
err分享
err收藏
学者 查看更多内容