Towards LLM-Based Analysis of Virtualization-Obfuscated Code through Automated Data Generation

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: An, Sangjun, Park, Hyeyeon, Son, Yejin, Lee, Seoksu, Cho, Eun-Sun
Format: Preprint
Published: 2026
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866909031081181184
author An, Sangjun
Park, Hyeyeon
Son, Yejin
Lee, Seoksu
Cho, Eun-Sun
author_facet An, Sangjun
Park, Hyeyeon
Son, Yejin
Lee, Seoksu
Cho, Eun-Sun
contents Virtualization-based obfuscation produces extremely large and structurally complex binaries, posing challenges for LLM-based analysis due to input size limits and the need for large-scale labeled data. We address this by focusing on structural rather than full semantic analysis. Obfuscated binaries are decomposed into the largest semantically coherent units that fit within LLM constraints and are labeled according to their structural roles. We implement a static analysis framework to automate labeling and enable large-scale dataset generation. Our prototype shows strong performance on real-world virtualization obfuscators.
format Preprint
id arxiv_https___arxiv_org_abs_2605_09961
institution arXiv
publishDate 2026
record_format arxiv
spellingShingle Towards LLM-Based Analysis of Virtualization-Obfuscated Code through Automated Data Generation
An, Sangjun
Park, Hyeyeon
Son, Yejin
Lee, Seoksu
Cho, Eun-Sun
Cryptography and Security
Virtualization-based obfuscation produces extremely large and structurally complex binaries, posing challenges for LLM-based analysis due to input size limits and the need for large-scale labeled data. We address this by focusing on structural rather than full semantic analysis. Obfuscated binaries are decomposed into the largest semantically coherent units that fit within LLM constraints and are labeled according to their structural roles. We implement a static analysis framework to automate labeling and enable large-scale dataset generation. Our prototype shows strong performance on real-world virtualization obfuscators.
title Towards LLM-Based Analysis of Virtualization-Obfuscated Code through Automated Data Generation
topic Cryptography and Security
url https://arxiv.org/abs/2605.09961