Zuxin Chen

ORCID: 0009-0008-8051-9705
Publications
Citations
Views
---
Saved
---
About
Contact & Profiles
Research Areas
  • Advanced Malware Detection Techniques
  • Web Application Security Vulnerabilities
  • Software Testing and Debugging Techniques
  • Software Engineering Research
  • Security and Verification in Computing

Institute of Information Engineering
2023

University of Chinese Academy of Sciences
2023

Third-party libraries (TPLs) are extensively utilized by developers to expedite the software development process and incorporate external functionalities. Nevertheless, insecure TPL reuse can lead significant security risks. Existing methods, which involve extracting strings or conducting function matching, employed determine presence of code in target binary. However, these methods often yield unsatisfactory results due recurrence numerous similar non-homologous functions. Furthermore,...

10.1145/3625294 article EN other-oa ACM Transactions on Software Engineering and Methodology 2023-09-26

Code reuse in software development frequently facilitates the spread of vulnerabilities, making scope affected CVE reports imprecise. Traditional methods primarily focus on identifying reused vulnerability code within target software, yet they cannot verify if these vulnerabilities can be triggered new contexts. This limitation often results false positives. In this paper, we introduce TransferFuzz, a novel verification framework, to whether propagated through software. Innovatively,...

10.48550/arxiv.2411.18347 preprint EN arXiv (Cornell University) 2024-11-27

Third-party libraries (TPLs) are extensively utilized by developers to expedite the software development process and incorporate external functionalities. Nevertheless, insecure TPL reuse can lead significant security risks. Existing methods employed determine presence of code in target binary. methods, which involve extracting strings or conducting function matching, However, these often yield unsatisfactory results due recurrence numerous similar non-homologous functions. Additionally,...

10.48550/arxiv.2305.04026 preprint EN other-oa arXiv (Cornell University) 2023-01-01
Coming Soon ...