{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,3]],"date-time":"2026-03-03T15:58:11Z","timestamp":1772553491672,"version":"3.50.1"},"publisher-location":"Cham","reference-count":33,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783030415785","type":"print"},{"value":"9783030415792","type":"electronic"}],"license":[{"start":{"date-parts":[[2020,1,1]],"date-time":"2020-01-01T00:00:00Z","timestamp":1577836800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020]]},"DOI":"10.1007\/978-3-030-41579-2_12","type":"book-chapter","created":{"date-parts":[[2020,2,17]],"date-time":"2020-02-17T16:09:09Z","timestamp":1581955749000},"page":"199-218","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":19,"title":["VulHunter: An Automated Vulnerability Detection System Based on Deep Learning and Bytecode"],"prefix":"10.1007","author":[{"given":"Ning","family":"Guo","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Xiaoyong","family":"Li","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Hui","family":"Yin","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yali","family":"Gao","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2020,2,18]]},"reference":[{"key":"12_CR1","unstructured":"Flawfinder (2015). http:\/\/www.dwheeler.com"},{"key":"12_CR2","unstructured":"Acunetix (2018). https:\/\/www.acunetix.com"},{"key":"12_CR3","unstructured":"Application security statistics report (2018). https:\/\/www.whitehatsec.com\/blog\/2018-whitehat-app-sec-statistics-report\/"},{"key":"12_CR4","unstructured":"Burpsuit (2018). https:\/\/portswigger.net\/burp"},{"key":"12_CR5","unstructured":"Checkmarx (2018). https:\/\/www.checkmarx.com"},{"key":"12_CR6","unstructured":"Common weakness enumeration (2018). https:\/\/cwe.mitre.org\/index.html"},{"key":"12_CR7","unstructured":"National vulnerability database (2018). https:\/\/www.nist.gov"},{"key":"12_CR8","unstructured":"Phpcs-security-audit (2018). https:\/\/github.com\/FloeDesignTechnologies\/phpcs-security-audit"},{"key":"12_CR9","unstructured":"RIPS (2018). https:\/\/www.ripstech.com"},{"key":"12_CR10","unstructured":"Rough audit tool for security (2018). https:\/\/code.google.com\/archive\/p\/rough-auditing-tool-for-security"},{"key":"12_CR11","unstructured":"Software assurance reference dataset (2018). https:\/\/samate.nist.gov\/SRD\/index.php"},{"key":"12_CR12","unstructured":"Sonarqube (2018). https:\/\/www.sonarqube.org\/"},{"key":"12_CR13","unstructured":"Vulcan logic dumper (2018). https:\/\/derickrethans.nl\/projects.html"},{"key":"12_CR14","unstructured":"Word2vec (2018). https:\/\/radimrehurek.com\/gensim\/models\/word2vec.html"},{"key":"12_CR15","unstructured":"WPScan (2018). https:\/\/wpscan.org"},{"key":"12_CR16","doi-asserted-by":"crossref","unstructured":"Bau, J., Bursztein, E., Gupta, D., Mitchell, J.C.: State of the art: automated black-box web application vulnerability testing. In: Security and Privacy, pp. 332\u2013345 (2010)","DOI":"10.1109\/SP.2010.27"},{"key":"12_CR17","unstructured":"Doup\u00e9, A., Cavedon, L., Kruegel, C., Vigna, G.: Enemy of the state: a state-aware black-box vulnerability scanner. In: Usenix Security Symposium (2012)"},{"key":"12_CR18","doi-asserted-by":"crossref","unstructured":"Doup\u00e9, A., Cova, M., Vigna, G.: Why johnny can\u2019t pentest: an analysis of black-box web vulnerability scanners. In: International Conference on Detection of Intrusions and Malware, and Vulnerability Assessment, pp. 111\u2013131 (2010)","DOI":"10.1007\/978-3-642-14215-4_7"},{"key":"12_CR19","doi-asserted-by":"crossref","unstructured":"Duchene, F., Groz, R., Rawat, S., Richier, J.L.: XSS vulnerability detection using model inference assisted evolutionary fuzzing. In: IEEE Fifth International Conference on Software Testing, Verification and Validation, pp. 815\u2013817 (2012)","DOI":"10.1109\/ICST.2012.181"},{"issue":"10","key":"12_CR20","doi-asserted-by":"publisher","first-page":"2451","DOI":"10.1162\/089976600300015015","volume":"12","author":"FA Gers","year":"2000","unstructured":"Gers, F.A., Schmidhuber, J., Cummins, F.: Learning to forget: continual prediction with LSTM. Neural Comput. 12(10), 2451\u20132471 (2000)","journal-title":"Neural Comput."},{"issue":"1","key":"12_CR21","first-page":"115","volume":"3","author":"FA Gers","year":"2003","unstructured":"Gers, F.A., Schraudolph, N.N., Schmidhuber, J.: Learning precise timing with LSTM recurrent networks. J. Mach. Learn. Res. 3(1), 115\u2013143 (2003)","journal-title":"J. Mach. Learn. Res."},{"key":"12_CR22","doi-asserted-by":"publisher","unstructured":"Graves, A.: Long short-term memory. In: Supervised Sequence Labelling with Recurrent Neural Networks. Studies in Computational Intelligence, vol. 385. Springer, Heidelberg (2012). https:\/\/doi.org\/10.1007\/978-3-642-24797-2_4","DOI":"10.1007\/978-3-642-24797-2_4"},{"key":"12_CR23","doi-asserted-by":"crossref","unstructured":"Grieco, G., Grinblat, G.L., Uzal, L., Rawat, S., Feist, J., Mounier, L.: Toward large-scale vulnerability discovery using machine learning. In: ACM Conference on Data and Application Security and Privacy, pp. 85\u201396 (2016)","DOI":"10.1145\/2857705.2857720"},{"key":"12_CR24","unstructured":"Halfond W G J, Viegas J, O.A.: A classification of SQL injection attacks and countermeasures (2006)"},{"key":"12_CR25","doi-asserted-by":"publisher","first-page":"1735","DOI":"10.1162\/neco.1997.9.8.1735","volume":"9","author":"S Hochreiter","year":"1997","unstructured":"Hochreiter, S., Schmidhuber, J.: Long short-term memory. Neural Comput. 9, 1735\u20131780 (1997)","journal-title":"Neural Comput."},{"issue":"4","key":"12_CR26","doi-asserted-by":"publisher","first-page":"229","DOI":"10.1145\/989393.989419","volume":"39","author":"S Horwitz","year":"2004","unstructured":"Horwitz, S., Reps, T., Binkley, D.: Interprocedural slicing using dependence graphs. ACM SIGPLAN Not. 39(4), 229\u2013243 (2004)","journal-title":"ACM SIGPLAN Not."},{"key":"12_CR27","doi-asserted-by":"crossref","unstructured":"Ji, T., Yue, W., Chang, W., Xi, Z., Wang, Z.: The coming era of alphahacking? A survey of automatic software vulnerability detection, exploitation and patching techniques. In: IEEE Third International Conference on Data Science in Cyberspace (2018)","DOI":"10.1109\/DSC.2018.00017"},{"key":"12_CR28","doi-asserted-by":"crossref","unstructured":"Li, Z., et al.: VulDeePecker: a deep learning-based system for vulnerability detection (2018)","DOI":"10.14722\/ndss.2018.23158"},{"key":"12_CR29","doi-asserted-by":"publisher","first-page":"128","DOI":"10.1016\/j.cose.2018.02.006","volume":"76","author":"MH Nguyen","year":"2018","unstructured":"Nguyen, M.H., Le, N.D., Xuan, M.N., Quan, T.T.: Auto-detection of sophisticated malware using lazy-binding control flow graph and deep learning. Comput. Secur. 76, 128\u2013155 (2018)","journal-title":"Comput. Secur."},{"key":"12_CR30","doi-asserted-by":"crossref","unstructured":"Sinha, S., Harrold, M.J., Rothermel, G.: System-dependence-graph-based slicing of programs with arbitrary interprocedural control flow. In: International Conference on Software Engineering (1999)","DOI":"10.1145\/302405.302675"},{"key":"12_CR31","doi-asserted-by":"crossref","unstructured":"Song, D., et al.: BitBlaze: a new approach to computer security via binary analysis. In: International Conference on Information Systems Security, pp. 1\u201325 (2008)","DOI":"10.1007\/978-3-540-89862-7_1"},{"key":"12_CR32","doi-asserted-by":"crossref","unstructured":"William Melicher, A.D.: Riding out DOMSday: Toward detecting and preventing DOM cross-site scripting (2018)","DOI":"10.14722\/ndss.2018.23309"},{"key":"12_CR33","doi-asserted-by":"crossref","unstructured":"Yamaguchi, F., Golde, N., Arp, D., Rieck, K.: Modeling and discovering vulnerabilities with code property graphs. In: Security and Privacy, pp. 590\u2013604 (2014)","DOI":"10.1109\/SP.2014.44"}],"container-title":["Lecture Notes in Computer Science","Information and Communications Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-41579-2_12","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,11,26]],"date-time":"2020-11-26T20:18:12Z","timestamp":1606421892000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-41579-2_12"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020]]},"ISBN":["9783030415785","9783030415792"],"references-count":33,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-41579-2_12","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020]]},"assertion":[{"value":"18 February 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ICICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"International Conference on Information and Communications Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Beijing","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"China","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2019","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"15 December 2019","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"17 December 2019","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"21","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"icics2019","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Double-blind","order":1,"name":"type","label":"Type","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"Easy Chair","order":2,"name":"conference_management_system","label":"Conference Management System","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"199","order":3,"name":"number_of_submissions_sent_for_review","label":"Number of Submissions Sent for Review","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"47","order":4,"name":"number_of_full_papers_accepted","label":"Number of Full Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"0","order":5,"name":"number_of_short_papers_accepted","label":"Number of Short Papers Accepted","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"24% - The value is computed by the equation \"Number of Full Papers Accepted \/ Number of Submissions Sent for Review * 100\" and then rounded to a whole number.","order":6,"name":"acceptance_rate_of_full_papers","label":"Acceptance Rate of Full Papers","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"3","order":7,"name":"average_number_of_reviews_per_paper","label":"Average Number of Reviews per Paper","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"8","order":8,"name":"average_number_of_papers_per_reviewer","label":"Average Number of Papers per Reviewer","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}},{"value":"No","order":9,"name":"external_reviewers_involved","label":"External Reviewers Involved","group":{"name":"ConfEventPeerReviewInformation","label":"Peer Review Information (provided by the conference organizers)"}}]}}