csvl / SEMA

SEMA is based on angr, a symbolic execution engine used to extract API calls. Especially, we extend ANGR with strategies to create representative signatures based on System Call Dependency graph (SCDG). Those SCDGs can be exploited in machine learning modules to do classification/detection.

Home Page:https://csvl.github.io/SEMA/

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

csvl/SEMA Watchers