Semantic Search of Related Patterns in Source Code

posted in #IT Security, Mobile & Cloud on the 13.09.2020

The analysis of source code for security-critical elements can be supported by tools that search for certain predefined patterns in program code and, in the event of hits, make statements, for example that a code fragment most probably represents a certain functionality or appears to be vulnerable to certain attack vectors. Implicitly, however, such a search excludes all unknown code parts and is therefore inherently incomplete.

In this project, the recognition of semantic relationships in code will be used to automatically identify further code fragments that represent a similar functionality. The result could help to better classify the purpose of unknown code parts and would thus significantly support the safety-critical analysis of source code.

Downloads

File Description File size
pdf Project Report (DE) Version 1.0 of 1.9.2020 (German only)
588 KB