Yama: Precise Opcode-based Data Flow Analysis for Detecting PHP Applications Vulnerabilities
Fuente:
arXiv
Saved in:
| Main Authors: | Jiazhen, Zhao, Kailong, Zhu, Lu, Yu, Hui, Huang, Yuliang, Lu |
|---|---|
| Format: | Preprint |
| Published: |
2024
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
Similar Items
AutoVulnPHP: LLM-Powered Two-Stage PHP Vulnerability Detection and Automated Localization
by: Wang, Zhiqiang, et al.
Published: (2026)
by: Wang, Zhiqiang, et al.
Published: (2026)
Malicious Code Detection in Smart Contracts via Opcode Vectorization
by: Zou, Huanhuan, et al.
Published: (2025)
by: Zou, Huanhuan, et al.
Published: (2025)
What All the PHUZZ Is About: A Coverage-guided Fuzzer for Finding Vulnerabilities in PHP Web Applications
by: Neef, Sebastian, et al.
Published: (2024)
by: Neef, Sebastian, et al.
Published: (2024)
An Explainable AI Model for the Detecting Malicious Smart Contracts Based on EVM Opcode Based Features
by: Surendran, Roopak
Published: (2025)
by: Surendran, Roopak
Published: (2025)
Poster: Long PHP webshell files detection based on sliding window attention
by: Wang, Zhiqiang, et al.
Published: (2025)
by: Wang, Zhiqiang, et al.
Published: (2025)
PhishingHook: Catching Phishing Ethereum Smart Contracts leveraging EVM Opcodes
by: De Rosa, Pasquale, et al.
Published: (2025)
by: De Rosa, Pasquale, et al.
Published: (2025)
WALLETRADAR: Towards Automating the Detection of Vulnerabilities in Browser-based Cryptocurrency Wallets
by: Xia, Pengcheng, et al.
Published: (2024)
by: Xia, Pengcheng, et al.
Published: (2024)
When Safe Models Merge into Danger: Exploiting Latent Vulnerabilities in LLM Fusion
by: Li, Jiaqing, et al.
Published: (2026)
by: Li, Jiaqing, et al.
Published: (2026)
Fuzzing the PHP Interpreter via Dataflow Fusion
by: Jiang, Yuancheng, et al.
Published: (2024)
by: Jiang, Yuancheng, et al.
Published: (2024)
Unity is Strength: Enhancing Precision in Reentrancy Vulnerability Detection of Smart Contract Analysis Tools
by: Wang, Zexu, et al.
Published: (2024)
by: Wang, Zexu, et al.
Published: (2024)
TAPFixer: Automatic Detection and Repair of Home Automation Vulnerabilities based on Negated-property Reasoning
by: Yu, Yinbo, et al.
Published: (2024)
by: Yu, Yinbo, et al.
Published: (2024)
OpDiffer: LLM-Assisted Opcode-Level Differential Testing of Ethereum Virtual Machine
by: Ma, Jie, et al.
Published: (2025)
by: Ma, Jie, et al.
Published: (2025)
CNN-LSTM and Transfer Learning Models for Malware Classification based on Opcodes and API Calls
by: Bensaoud, Ahmed, et al.
Published: (2024)
by: Bensaoud, Ahmed, et al.
Published: (2024)
Enhancing Code Vulnerability Detection via Vulnerability-Preserving Data Augmentation
by: Liu, Shangqing, et al.
Published: (2024)
by: Liu, Shangqing, et al.
Published: (2024)
Assessing the Effectiveness of LLMs in Android Application Vulnerability Analysis
by: Kouliaridis, Vasileios, et al.
Published: (2024)
by: Kouliaridis, Vasileios, et al.
Published: (2024)
Exposing the Ghost in the Transformer: Abnormal Detection for Large Language Models via Hidden State Forensics
by: Zhou, Shide, et al.
Published: (2025)
by: Zhou, Shide, et al.
Published: (2025)
Divide and Conquer based Symbolic Vulnerability Detection
by: Scherb, Christopher, et al.
Published: (2024)
by: Scherb, Christopher, et al.
Published: (2024)
Detecting Protracted Vulnerabilities in Open Source Projects
by: Sridharkumar, Arjun, et al.
Published: (2026)
by: Sridharkumar, Arjun, et al.
Published: (2026)
Evaluating and Enhancing the Vulnerability Reasoning Capabilities of Large Language Models
by: Lu, Li, et al.
Published: (2026)
by: Lu, Li, et al.
Published: (2026)
Detecting Code Vulnerabilities with Heterogeneous GNN Training
by: Luo, Yu, et al.
Published: (2025)
by: Luo, Yu, et al.
Published: (2025)
MCPGuard : Automatically Detecting Vulnerabilities in MCP Servers
by: Wang, Bin, et al.
Published: (2025)
by: Wang, Bin, et al.
Published: (2025)
Comprehensive Vulnerability Analysis is Necessary for Trustworthy LLM-MAS
by: He, Pengfei, et al.
Published: (2025)
by: He, Pengfei, et al.
Published: (2025)
Beyond Fidelity: Explaining Vulnerability Localization of Learning-based Detectors
by: Cheng, Baijun, et al.
Published: (2024)
by: Cheng, Baijun, et al.
Published: (2024)
VERCATION: Precise Vulnerable Open-source Software Version Identification based on Static Analysis and LLM
by: Cheng, Yiran, et al.
Published: (2024)
by: Cheng, Yiran, et al.
Published: (2024)
An Analysis of Modern Web Security Vulnerabilities Inside WebAssembly Applications
by: Corrias, Lorenzo, et al.
Published: (2026)
by: Corrias, Lorenzo, et al.
Published: (2026)
Capturing Monetarily Exploitable Vulnerability in Smart Contracts via Auditor Knowledge-Learning Fuzzing
by: Cai, Bowen, et al.
Published: (2026)
by: Cai, Bowen, et al.
Published: (2026)
Static Detection of Filesystem Vulnerabilities in Android Systems
by: Lee, Yu-Tsung, et al.
Published: (2024)
by: Lee, Yu-Tsung, et al.
Published: (2024)
MiniScope: Automated UI Exploration and Privacy Inconsistency Detection of MiniApps via Two-phase Iterative Hybrid Analysis
by: Wang, Shenao, et al.
Published: (2024)
by: Wang, Shenao, et al.
Published: (2024)
SAVANT: Vulnerability Detection in Application Dependencies through Semantic-Guided Reachability Analysis
by: Lingxiang, Wang, et al.
Published: (2025)
by: Lingxiang, Wang, et al.
Published: (2025)
TPSQLi: Test Prioritization for SQL Injection Vulnerability Detection in Web Applications
by: Yang, Guan-Yan, et al.
Published: (2025)
by: Yang, Guan-Yan, et al.
Published: (2025)
MultiCFV: Detecting Control Flow Vulnerabilities in Smart Contracts Leveraging Multimodal Deep Learning
by: Peng, Hongli, et al.
Published: (2025)
by: Peng, Hongli, et al.
Published: (2025)
RefineRAG: Word-Level Poisoning Attacks via Retriever-Guided Text Refinement
by: Wang, Ziye, et al.
Published: (2026)
by: Wang, Ziye, et al.
Published: (2026)
Breaking Precision Time: OS Vulnerability Exploits Against IEEE 1588
by: Soomro, Muhammad Abdullah, et al.
Published: (2025)
by: Soomro, Muhammad Abdullah, et al.
Published: (2025)
SAGE: Signal-Amplified Guided Embeddings for LLM-based Vulnerability Detection
by: Shan, Zhengyang, et al.
Published: (2026)
by: Shan, Zhengyang, et al.
Published: (2026)
Demystifying and Detecting Agentic Workflow Injection Vulnerabilities in GitHub Actions
by: Wang, Shenao, et al.
Published: (2026)
by: Wang, Shenao, et al.
Published: (2026)
Symbolic Execution in Practice: A Survey of Applications in Vulnerability, Malware, Firmware, and Protocol Analysis
by: Bailey, Joshua, et al.
Published: (2025)
by: Bailey, Joshua, et al.
Published: (2025)
Cross-Ecosystem Vulnerability Analysis for Python Applications
by: Alexopoulos, Georgios, et al.
Published: (2026)
by: Alexopoulos, Georgios, et al.
Published: (2026)
Boosting Cybersecurity Vulnerability Scanning based on LLM-supported Static Application Security Testing
by: Keltek, Mete, et al.
Published: (2024)
by: Keltek, Mete, et al.
Published: (2024)
Benchmarking LLMs and LLM-based Agents in Practical Vulnerability Detection for Code Repositories
by: Yildiz, Alperen, et al.
Published: (2025)
by: Yildiz, Alperen, et al.
Published: (2025)
Software Vulnerability Analysis Across Programming Language and Program Representation Landscapes: A Survey
by: Qian, Zhuoyun, et al.
Published: (2025)
by: Qian, Zhuoyun, et al.
Published: (2025)
Similar Items
-
AutoVulnPHP: LLM-Powered Two-Stage PHP Vulnerability Detection and Automated Localization
by: Wang, Zhiqiang, et al.
Published: (2026) -
Malicious Code Detection in Smart Contracts via Opcode Vectorization
by: Zou, Huanhuan, et al.
Published: (2025) -
What All the PHUZZ Is About: A Coverage-guided Fuzzer for Finding Vulnerabilities in PHP Web Applications
by: Neef, Sebastian, et al.
Published: (2024) -
An Explainable AI Model for the Detecting Malicious Smart Contracts Based on EVM Opcode Based Features
by: Surendran, Roopak
Published: (2025) -
Poster: Long PHP webshell files detection based on sliding window attention
by: Wang, Zhiqiang, et al.
Published: (2025)