A new semantic annotation approach for software vulnerability source code. (8th February 2021)
- Record Type:
- Journal Article
- Title:
- A new semantic annotation approach for software vulnerability source code. (8th February 2021)
- Main Title:
- A new semantic annotation approach for software vulnerability source code
- Authors:
- Zhang, Chi
Chen, Jinfu
Zhang, Lei
Chen, Shujie
Zhang, Zufa - Abstract:
- An efficient semantic annotation approach is proposed to annotate software vulnerability source code based on the vulnerability code semantic description language (VCSDL) in this paper. A set of general annotation frameworks is proposed for two basic components: basic description information of vulnerability and vulnerability source code description information in the language. Specific annotation methods are studied for these two components, according to the annotation method of the basic description information of vulnerability. Also, the corresponding attribute in the VCSDL document structure is extracted to determine the labelling of the basic information of the vulnerability. While, according to the vulnerability source code information, the semantic annotation of the source code information of the vulnerability is implemented. The experimental results show that the proposed semantic annotation approach has a better effectiveness on the annotation of datasets with a simple code structure and a smaller scale. The success rate and accuracy of the proposed annotation are higher and the false positive rate and false negative rate are lower.
- Is Part Of:
- International journal of simulation and process modelling. Volume 16:Number 1(2021)
- Journal:
- International journal of simulation and process modelling
- Issue:
- Volume 16:Number 1(2021)
- Issue Display:
- Volume 16, Issue 1 (2021)
- Year:
- 2021
- Volume:
- 16
- Issue:
- 1
- Issue Sort Value:
- 2021-0016-0001-0000
- Page Start:
- 1
- Page End:
- 13
- Publication Date:
- 2021-02-08
- Subjects:
- software vulnerability -- semantic annotation -- vulnerability source code -- vulnerability detection
Management -- Computer simulation -- Periodicals
Mathematical models -- Periodicals
Operations research -- Periodicals
Simulation methods -- Periodicals
003.05 - Journal URLs:
- http://www.inderscience.com/ ↗
http://www.inderscience.com/jhome.php?jcode=ijspm ↗
http://www.inderscience.com/browse/index.php?journalID=100 ↗ - Languages:
- English
- ISSNs:
- 1740-2123
- Deposit Type:
- Legaldeposit
- View Content:
- Available online (eLD content is only available in our Reading Rooms) ↗
- Physical Locations:
- British Library DSC - BLDSS-3PM
British Library STI - ELD Digital store - Ingest File:
- 15567.xml