Towards LLM-Based Analysis of Virtualization-Obfuscated Code through Automated Data Generation
Fuente:
arXiv
Saved in:
| Main Authors: | , , , , |
|---|---|
| Format: | Preprint |
| Published: |
2026
|
| Subjects: | |
| Online Access: | |
| Tags: |
Add Tag
No Tags, Be the first to tag this record!
|
| _version_ | 1866909031081181184 |
|---|---|
| author | An, Sangjun Park, Hyeyeon Son, Yejin Lee, Seoksu Cho, Eun-Sun |
| author_facet | An, Sangjun Park, Hyeyeon Son, Yejin Lee, Seoksu Cho, Eun-Sun |
| contents | Virtualization-based obfuscation produces extremely large and structurally complex binaries, posing challenges for LLM-based analysis due to input size limits and the need for large-scale labeled data. We address this by focusing on structural rather than full semantic analysis. Obfuscated binaries are decomposed into the largest semantically coherent units that fit within LLM constraints and are labeled according to their structural roles. We implement a static analysis framework to automate labeling and enable large-scale dataset generation. Our prototype shows strong performance on real-world virtualization obfuscators. |
| format | Preprint |
| id |
arxiv_https___arxiv_org_abs_2605_09961 |
| institution | arXiv |
| publishDate | 2026 |
| record_format | arxiv |
| spellingShingle | Towards LLM-Based Analysis of Virtualization-Obfuscated Code through Automated Data Generation An, Sangjun Park, Hyeyeon Son, Yejin Lee, Seoksu Cho, Eun-Sun Cryptography and Security Virtualization-based obfuscation produces extremely large and structurally complex binaries, posing challenges for LLM-based analysis due to input size limits and the need for large-scale labeled data. We address this by focusing on structural rather than full semantic analysis. Obfuscated binaries are decomposed into the largest semantically coherent units that fit within LLM constraints and are labeled according to their structural roles. We implement a static analysis framework to automate labeling and enable large-scale dataset generation. Our prototype shows strong performance on real-world virtualization obfuscators. |
| title | Towards LLM-Based Analysis of Virtualization-Obfuscated Code through Automated Data Generation |
| topic | Cryptography and Security |
| url | https://arxiv.org/abs/2605.09961 |