{"id":"https://openalex.org/W4389158729","doi":"https://doi.org/10.1145/3611643.3616351","title":"Learning Program Semantics for Vulnerability Detection via Vulnerability-Specific Inter-procedural Slicing","display_name":"Learning Program Semantics for Vulnerability Detection via Vulnerability-Specific Inter-procedural Slicing","publication_year":2023,"publication_date":"2023-11-30","ids":{"openalex":"https://openalex.org/W4389158729","doi":"https://doi.org/10.1145/3611643.3616351"},"language":"en","primary_location":{"id":"doi:10.1145/3611643.3616351","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3611643.3616351","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3611643.3616351","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3611643.3616351","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5101944861","display_name":"Bozhi Wu","orcid":"https://orcid.org/0000-0002-0360-2248"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":true,"raw_author_name":"Bozhi Wu","raw_affiliation_strings":["Singapore Management University, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"Singapore Management University, Singapore, Singapore","institution_ids":["https://openalex.org/I79891267"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5045943684","display_name":"Shangqing Liu","orcid":"https://orcid.org/0000-0002-5598-4006"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Shangqing Liu","raw_affiliation_strings":["Nanyang Technological University, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University, Singapore, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100604658","display_name":"Yang Xiao","orcid":"https://orcid.org/0009-0005-8009-2252"},"institutions":[{"id":"https://openalex.org/I4210156404","display_name":"Institute of Information Engineering","ror":"https://ror.org/04r53se39","country_code":"CN","type":"facility","lineage":["https://openalex.org/I19820366","https://openalex.org/I4210156404"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Yang Xiao","raw_affiliation_strings":["Institute of Information Engineering, CAS, Beijing, China"],"affiliations":[{"raw_affiliation_string":"Institute of Information Engineering, CAS, Beijing, China","institution_ids":["https://openalex.org/I4210156404"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5107249519","display_name":"Zhiming Li","orcid":"https://orcid.org/0000-0003-3453-5698"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Zhiming Li","raw_affiliation_strings":["Nanyang Technological University, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University, Singapore, Singapore","institution_ids":["https://openalex.org/I172675005"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100429004","display_name":"Jun Sun","orcid":"https://orcid.org/0000-0002-3545-1392"},"institutions":[{"id":"https://openalex.org/I79891267","display_name":"Singapore Management University","ror":"https://ror.org/050qmg959","country_code":"SG","type":"education","lineage":["https://openalex.org/I79891267"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Jun Sun","raw_affiliation_strings":["Singapore Management University, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"Singapore Management University, Singapore, Singapore","institution_ids":["https://openalex.org/I79891267"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5072863865","display_name":"Shang\u2010Wei Lin","orcid":"https://orcid.org/0000-0002-9726-3434"},"institutions":[{"id":"https://openalex.org/I172675005","display_name":"Nanyang Technological University","ror":"https://ror.org/02e7b5302","country_code":"SG","type":"education","lineage":["https://openalex.org/I172675005"]}],"countries":["SG"],"is_corresponding":false,"raw_author_name":"Shang-Wei Lin","raw_affiliation_strings":["Nanyang Technological University, Singapore, Singapore"],"affiliations":[{"raw_affiliation_string":"Nanyang Technological University, Singapore, Singapore","institution_ids":["https://openalex.org/I172675005"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":6,"corresponding_author_ids":["https://openalex.org/A5101944861"],"corresponding_institution_ids":["https://openalex.org/I79891267"],"apc_list":null,"apc_paid":null,"fwci":4.983,"has_fulltext":true,"cited_by_count":11,"citation_normalized_percentile":{"value":0.95670102,"is_in_top_1_percent":false,"is_in_top_10_percent":true},"cited_by_percentile_year":{"min":94,"max":99},"biblio":{"volume":null,"issue":null,"first_page":"1371","last_page":"1383"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10260","display_name":"Software Engineering Research","score":0.9991000294685364,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10743","display_name":"Software Testing and Debugging Techniques","score":0.9988999962806702,"subfield":{"id":"https://openalex.org/subfields/1712","display_name":"Software"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9984999895095825,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/program-slicing","display_name":"Program slicing","score":0.808204174041748},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.8055850267410278},{"id":"https://openalex.org/keywords/vulnerability","display_name":"Vulnerability (computing)","score":0.6724234819412231},{"id":"https://openalex.org/keywords/semantics","display_name":"Semantics (computer science)","score":0.6050554513931274},{"id":"https://openalex.org/keywords/slicing","display_name":"Slicing","score":0.5259366631507874},{"id":"https://openalex.org/keywords/artificial-intelligence","display_name":"Artificial intelligence","score":0.4580179750919342},{"id":"https://openalex.org/keywords/vulnerability-assessment","display_name":"Vulnerability assessment","score":0.43569400906562805},{"id":"https://openalex.org/keywords/graph","display_name":"Graph","score":0.4193058907985687},{"id":"https://openalex.org/keywords/software","display_name":"Software","score":0.39496803283691406},{"id":"https://openalex.org/keywords/programming-language","display_name":"Programming language","score":0.22576966881752014},{"id":"https://openalex.org/keywords/theoretical-computer-science","display_name":"Theoretical computer science","score":0.2174413800239563},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.11999166011810303},{"id":"https://openalex.org/keywords/world-wide-web","display_name":"World Wide Web","score":0.07894718647003174}],"concepts":[{"id":"https://openalex.org/C91071405","wikidata":"https://www.wikidata.org/wiki/Q1413145","display_name":"Program slicing","level":3,"score":0.808204174041748},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.8055850267410278},{"id":"https://openalex.org/C95713431","wikidata":"https://www.wikidata.org/wiki/Q631425","display_name":"Vulnerability (computing)","level":2,"score":0.6724234819412231},{"id":"https://openalex.org/C184337299","wikidata":"https://www.wikidata.org/wiki/Q1437428","display_name":"Semantics (computer science)","level":2,"score":0.6050554513931274},{"id":"https://openalex.org/C2776190703","wikidata":"https://www.wikidata.org/wiki/Q488148","display_name":"Slicing","level":2,"score":0.5259366631507874},{"id":"https://openalex.org/C154945302","wikidata":"https://www.wikidata.org/wiki/Q11660","display_name":"Artificial intelligence","level":1,"score":0.4580179750919342},{"id":"https://openalex.org/C167063184","wikidata":"https://www.wikidata.org/wiki/Q1400839","display_name":"Vulnerability assessment","level":3,"score":0.43569400906562805},{"id":"https://openalex.org/C132525143","wikidata":"https://www.wikidata.org/wiki/Q141488","display_name":"Graph","level":2,"score":0.4193058907985687},{"id":"https://openalex.org/C2777904410","wikidata":"https://www.wikidata.org/wiki/Q7397","display_name":"Software","level":2,"score":0.39496803283691406},{"id":"https://openalex.org/C199360897","wikidata":"https://www.wikidata.org/wiki/Q9143","display_name":"Programming language","level":1,"score":0.22576966881752014},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.2174413800239563},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.11999166011810303},{"id":"https://openalex.org/C136764020","wikidata":"https://www.wikidata.org/wiki/Q466","display_name":"World Wide Web","level":1,"score":0.07894718647003174},{"id":"https://openalex.org/C15744967","wikidata":"https://www.wikidata.org/wiki/Q9418","display_name":"Psychology","level":0,"score":0.0},{"id":"https://openalex.org/C542102704","wikidata":"https://www.wikidata.org/wiki/Q183257","display_name":"Psychotherapist","level":1,"score":0.0},{"id":"https://openalex.org/C137176749","wikidata":"https://www.wikidata.org/wiki/Q4105337","display_name":"Psychological resilience","level":2,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1145/3611643.3616351","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3611643.3616351","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3611643.3616351","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering","raw_type":"proceedings-article"},{"id":"pmh:oai:ink.library.smu.edu.sg:sis_research-9581","is_oa":true,"landing_page_url":"https://ink.library.smu.edu.sg/sis_research/8578","pdf_url":null,"source":{"id":"https://openalex.org/S4306401925","display_name":"Singapore Management University Institutional Knowledge (InK) (Singapore Management University)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I79891267","host_organization_name":"Singapore Management University","host_organization_lineage":["https://openalex.org/I79891267"],"host_organization_lineage_names":[],"type":"repository"},"license":"cc-by-nc-nd","license_id":"https://openalex.org/licenses/cc-by-nc-nd","version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"https://doi.org/10.1145/3611643.3616351","raw_type":"Conference Proceeding Article"}],"best_oa_location":{"id":"doi:10.1145/3611643.3616351","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3611643.3616351","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3611643.3616351","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 31st ACM Joint European Software Engineering Conference and Symposium on the Foundations of Software Engineering","raw_type":"proceedings-article"},"sustainable_development_goals":[{"id":"https://metadata.un.org/sdg/16","score":0.6700000166893005,"display_name":"Peace, Justice and strong institutions"}],"awards":[{"id":"https://openalex.org/G3882347383","display_name":null,"funder_award_id":"Tier 3","funder_id":"https://openalex.org/F4320320751","funder_display_name":"Ministry of Education - Singapore"},{"id":"https://openalex.org/G5016601650","display_name":null,"funder_award_id":"Academic Research Fund","funder_id":"https://openalex.org/F4320320751","funder_display_name":"Ministry of Education - Singapore"},{"id":"https://openalex.org/G5027370758","display_name":null,"funder_award_id":"MOET32020-0004","funder_id":"https://openalex.org/F4320320751","funder_display_name":"Ministry of Education - Singapore"},{"id":"https://openalex.org/G901625343","display_name":null,"funder_award_id":"Academic Research F","funder_id":"https://openalex.org/F4320320751","funder_display_name":"Ministry of Education - Singapore"}],"funders":[{"id":"https://openalex.org/F4320320751","display_name":"Ministry of Education - Singapore","ror":"https://ror.org/01kcva023"},{"id":"https://openalex.org/F4320323346","display_name":"B\u1ed9 Gi\u00e1o d\u1ee5c v\u00e0 \u00d0\u00e0o t\u1ea1o","ror":"https://ror.org/00drv3378"}],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W4389158729.pdf","grobid_xml":"https://content.openalex.org/works/W4389158729.grobid-xml"},"referenced_works_count":54,"referenced_works":["https://openalex.org/W1514468887","https://openalex.org/W1546956568","https://openalex.org/W1992114977","https://openalex.org/W2007121005","https://openalex.org/W2078563060","https://openalex.org/W2080973181","https://openalex.org/W2092483417","https://openalex.org/W2094382938","https://openalex.org/W2097347001","https://openalex.org/W2122312154","https://openalex.org/W2123256711","https://openalex.org/W2123301443","https://openalex.org/W2123722244","https://openalex.org/W2140323279","https://openalex.org/W2142840915","https://openalex.org/W2148805150","https://openalex.org/W2156018017","https://openalex.org/W2162436812","https://openalex.org/W2171248081","https://openalex.org/W2186070848","https://openalex.org/W2574017551","https://openalex.org/W2927543040","https://openalex.org/W2962960733","https://openalex.org/W2963350015","https://openalex.org/W2976184969","https://openalex.org/W2979566992","https://openalex.org/W3014339000","https://openalex.org/W3018033251","https://openalex.org/W3086449553","https://openalex.org/W3091588759","https://openalex.org/W3093497259","https://openalex.org/W3105735055","https://openalex.org/W3107418514","https://openalex.org/W3111602563","https://openalex.org/W3127736190","https://openalex.org/W3161071537","https://openalex.org/W3161938055","https://openalex.org/W3163206498","https://openalex.org/W3166095789","https://openalex.org/W3167276542","https://openalex.org/W3174220201","https://openalex.org/W3202579690","https://openalex.org/W3209475026","https://openalex.org/W4210493608","https://openalex.org/W4236800019","https://openalex.org/W4240486032","https://openalex.org/W4285490489","https://openalex.org/W4287168322","https://openalex.org/W4287889995","https://openalex.org/W4297795493","https://openalex.org/W4387691055","https://openalex.org/W6651964806","https://openalex.org/W6671101162","https://openalex.org/W6795470022"],"related_works":["https://openalex.org/W2134982133","https://openalex.org/W1964336761","https://openalex.org/W2991905743","https://openalex.org/W4239953224","https://openalex.org/W2112395437","https://openalex.org/W4302024603","https://openalex.org/W2347708239","https://openalex.org/W2170816480","https://openalex.org/W1595405651","https://openalex.org/W2011854888"],"abstract_inverted_index":{"Learning-based":[0],"approaches":[1,83],"that":[2,90,102],"learn":[3,74],"code":[4,29],"representations":[5],"for":[6,28],"software":[7],"vulnerability":[8,26,55,75,108],"detection":[9],"have":[10],"been":[11],"proven":[12],"to":[13,21,53,73,114],"produce":[14],"inspiring":[15],"results.":[16],"However,":[17],"they":[18],"still":[19],"fail":[20],"capture":[22,54],"complete":[23],"and":[24,60,88,100,105],"precise":[25],"semantics":[27,56,109],"representations.":[30],"To":[31],"address":[32],"the":[33,103,115],"limitations,":[34],"in":[35],"this":[36],"work,":[37],"we":[38],"propose":[39],"a":[40,63],"learning-based":[41,82],"approach":[42],"namely":[43],"SnapVuln,":[44],"which":[45],"first":[46],"utilizes":[47],"multiple":[48],"vulnerability-specific":[49],"inter-procedural":[50],"slicing":[51],"algorithms":[52],"of":[57,107],"various":[58],"types":[59],"then":[61],"employs":[62],"Gated":[64],"Graph":[65],"Neural":[66],"Network":[67],"(GGNN)":[68],"with":[69,80],"an":[70,97],"attention":[71],"mechanism":[72],"semantics.":[76],"We":[77,94],"compare":[78],"SnapVuln":[79,91,112],"state-of-the-art":[81],"on":[84],"two":[85],"public":[86],"datasets,":[87],"confirm":[89],"outperforms":[92],"them.":[93],"further":[95],"perform":[96],"ablation":[98],"study":[99],"demonstrate":[101],"completeness":[104],"precision":[106],"captured":[110],"by":[111],"contribute":[113],"performance":[116],"improvement.":[117]},"counts_by_year":[{"year":2026,"cited_by_count":1},{"year":2025,"cited_by_count":8},{"year":2024,"cited_by_count":2}],"updated_date":"2026-04-10T15:06:20.359241","created_date":"2025-10-10T00:00:00"}
