Matches in SemOpenAlex for { <https://semopenalex.org/work/W2912998789> ?p ?o ?g. }
- W2912998789 abstract "Cryptographic API misuses, such as exposed secrets, predictable random numbers, and vulnerable certificate verification, seriously threaten software security. The vision of automatically screening cryptographic API calls in massive-sized (e.g., millions of LoC) Java programs is not new. However, hindered by the practical difficulty of reducing false positives without compromising analysis quality, this goal has not been accomplished. State-of-the-art crypto API screening solutions are not designed to operate on a large scale. Our technical innovation is a set of fast and highly accurate slicing algorithms. Our algorithms refine program slices by identifying language-specific irrelevant elements. The refinements reduce false alerts by 76% to 80% in our experiments. Running our tool, CrytoGuard, on 46 high-impact large-scale Apache projects and 6,181 Android apps generate many security insights. Our findings helped multiple popular Apache projects to harden their code, including Spark, Ranger, and Ofbiz. We also have made substantial progress towards the science of analysis in this space, including: i) manually analyzing 1,295 Apache alerts and confirming 1,277 true positives (98.61% precision), ii) creating a benchmark with 38-unit basic cases and 74-unit advanced cases, iii) performing an in-depth comparison with leading solutions including CrySL, SpotBugs, and Coverity. We are in the process of integrating CryptoGuard with the Software Assurance Marketplace (SWAMP)." @default.
- W2912998789 created "2019-02-21" @default.
- W2912998789 creator A5015449164 @default.
- W2912998789 creator A5028738303 @default.
- W2912998789 creator A5047303372 @default.
- W2912998789 creator A5047718767 @default.
- W2912998789 creator A5069613308 @default.
- W2912998789 creator A5081377370 @default.
- W2912998789 creator A5087192873 @default.
- W2912998789 creator A5090273664 @default.
- W2912998789 date "2018-06-18" @default.
- W2912998789 modified "2023-10-16" @default.
- W2912998789 title "CryptoGuard: High Precision Detection of Cryptographic Vulnerabilities in Massive-sized Java Projects" @default.
- W2912998789 cites W1479871422 @default.
- W2912998789 cites W1526080054 @default.
- W2912998789 cites W1541063262 @default.
- W2912998789 cites W1558077212 @default.
- W2912998789 cites W1769343819 @default.
- W2912998789 cites W1857692135 @default.
- W2912998789 cites W1971751469 @default.
- W2912998789 cites W1986453394 @default.
- W2912998789 cites W2008810193 @default.
- W2912998789 cites W2042923641 @default.
- W2912998789 cites W2045057497 @default.
- W2912998789 cites W2048715902 @default.
- W2912998789 cites W2078393527 @default.
- W2912998789 cites W2092115639 @default.
- W2912998789 cites W2103370348 @default.
- W2912998789 cites W2121895731 @default.
- W2912998789 cites W2124228276 @default.
- W2912998789 cites W2134101189 @default.
- W2912998789 cites W2138110817 @default.
- W2912998789 cites W2145994642 @default.
- W2912998789 cites W2154122606 @default.
- W2912998789 cites W2166743230 @default.
- W2912998789 cites W2293618135 @default.
- W2912998789 cites W2357927175 @default.
- W2912998789 cites W2400329213 @default.
- W2912998789 cites W2506049781 @default.
- W2912998789 cites W2511044583 @default.
- W2912998789 cites W2532335977 @default.
- W2912998789 cites W2532717356 @default.
- W2912998789 cites W2532945044 @default.
- W2912998789 cites W2536707834 @default.
- W2912998789 cites W2537014044 @default.
- W2912998789 cites W2538893033 @default.
- W2912998789 cites W2561521908 @default.
- W2912998789 cites W2600871181 @default.
- W2912998789 cites W2604331051 @default.
- W2912998789 cites W2604745103 @default.
- W2912998789 cites W2612529343 @default.
- W2912998789 cites W2613948935 @default.
- W2912998789 cites W2672575173 @default.
- W2912998789 cites W2698406033 @default.
- W2912998789 cites W2740330300 @default.
- W2912998789 cites W2745087117 @default.
- W2912998789 cites W2759023773 @default.
- W2912998789 cites W2765671202 @default.
- W2912998789 cites W2766217896 @default.
- W2912998789 cites W2766347289 @default.
- W2912998789 cites W2766542353 @default.
- W2912998789 cites W2767943400 @default.
- W2912998789 cites W2793024489 @default.
- W2912998789 cites W2793937183 @default.
- W2912998789 cites W2794992746 @default.
- W2912998789 cites W2796472165 @default.
- W2912998789 cites W2808620986 @default.
- W2912998789 cites W2897859437 @default.
- W2912998789 cites W2929275958 @default.
- W2912998789 cites W2949256655 @default.
- W2912998789 cites W3032745429 @default.
- W2912998789 hasPublicationYear "2018" @default.
- W2912998789 type Work @default.
- W2912998789 sameAs 2912998789 @default.
- W2912998789 citedByCount "4" @default.
- W2912998789 countsByYear W29129987892019 @default.
- W2912998789 countsByYear W29129987892020 @default.
- W2912998789 crossrefType "posted-content" @default.
- W2912998789 hasAuthorship W2912998789A5015449164 @default.
- W2912998789 hasAuthorship W2912998789A5028738303 @default.
- W2912998789 hasAuthorship W2912998789A5047303372 @default.
- W2912998789 hasAuthorship W2912998789A5047718767 @default.
- W2912998789 hasAuthorship W2912998789A5069613308 @default.
- W2912998789 hasAuthorship W2912998789A5081377370 @default.
- W2912998789 hasAuthorship W2912998789A5087192873 @default.
- W2912998789 hasAuthorship W2912998789A5090273664 @default.
- W2912998789 hasConcept C10272871 @default.
- W2912998789 hasConcept C111919701 @default.
- W2912998789 hasConcept C117447612 @default.
- W2912998789 hasConcept C148027188 @default.
- W2912998789 hasConcept C154945302 @default.
- W2912998789 hasConcept C168065819 @default.
- W2912998789 hasConcept C178489894 @default.
- W2912998789 hasConcept C2777904410 @default.
- W2912998789 hasConcept C38652104 @default.
- W2912998789 hasConcept C41008148 @default.
- W2912998789 hasConcept C529173508 @default.
- W2912998789 hasConcept C548217200 @default.
- W2912998789 hasConcept C557433098 @default.
- W2912998789 hasConcept C64869954 @default.