9 papers · ranked by Valyu relevance
Ray Ngan, Surya Konkimalla, Zubair Shafiq
—As the web moves away from stateful tracking, browser fingerprinting is becoming more prevalent. Unfortunately, existing approaches to detect browser fingerprinting do not take into account potential evasion tactics such as code obfuscation. To address this gap, we investigate the robustness of a state-of-the-art…
Zhou, Dongchao, Ying, Lingyun + 4 more
—JavaScript's widespread adoption has made it an attractive target for malicious attackers who employ sophisticated obfuscation techniques to conceal harmful code. Current deobfuscation tools suffer from critical limitations that severely restrict their practical effectiveness. Existing tools struggle with diverse…
Jiang, Shan, Zhu, Chenguang + 2 more
JavaScript obfuscators are widely deployed to protect intellectual property and resist reverse engineering, yet their correctness has been largely overlooked compared to performance and resilience. Existing evaluations typically measure resistance to deobfuscation, leaving the critical question of whether obfuscators…
Shan Jiang, Pranoy Kovuri, Tao, David + 2 more
—Software obfuscation, particularly prevalent in JavaScript, hinders code comprehension and analysis, posing significant challenges to software testing, static analysis, and malware detection. This paper introduces CASCADE, a novel hybrid approach that integrates the advanced coding capabilities of Gemini with the…
Guoqiang Chen, Xin Jin, Zhiqiang Lin
Deobfuscating JavaScript (JS) code poses a significant challenge in web security, particularly as obfuscation techniques are frequently used to conceal malicious activities within scripts. While Large Language Models (LLMs) have recently shown promise in automating the deobfuscation process, transforming detection and…
Zhining Zhang, Liang Wan, Kun Chu, Shusheng Li + 3 more
'Lu Tang' 'Sathishkumar V E'] Currently, JavaScript malicious code detection methods are becoming more and more effective. Still, the existing methods based on deep learning are poor at detecting too long or too short JavaScript code. Based on this, this paper proposes an adaptive code length deep learning network…
Gino Caspari, João dos Santos Manuel, Ana Gago-Silva, Michael Jendryke
Archaeological heritage worldwide is threatened through deliberate destruction in particular site looting making the location of archaeological sites potentially sensitive data. At the same time, public information about site locations are important for heritage management, as well as agricultural and urban…
Fabienne Thelen, Jannis Hochmuth, Sven Griep, Benedikt Schwab + 3 more
The storage of sensitive data is a significant concern in contemporary times, particularly within web-based data management platforms. Thus these have to prioritize data security. One of the most effective measures is to encrypt and decrypt data on the client-side before it leaves the secure user environment. The…
Abdullah Sheneamer, Khalid Raza
System security for web-based applications is paramount, and for the avoidance of possible cyberattacks it is important to detect vulnerable JavaScript functions. Developers and security analysts have long relied upon static analysis to investigate vulnerabilities and faults within programs. Static analysis tools are…