Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Skip to main content

Showing 1–1 of 1 results for author: Aamir, Z

Searching in archive cs. Search in all archives.
.
  1. arXiv:2212.07979  [pdf, other

    cs.SE cs.CR cs.HC cs.PL

    Improving Developers' Understanding of Regex Denial of Service Tools through Anti-Patterns and Fix Strategies

    Authors: Sk Adnan Hassan, Zainab Aamir, Dongyoon Lee, James C. Davis, Francisco Servant

    Abstract: Regular expressions are used for diverse purposes, including input validation and firewalls. Unfortunately, they can also lead to a security vulnerability called ReDoS (Regular Expression Denial of Service), caused by a super-linear worst-case execution time during regex matching. Due to the severity and prevalence of ReDoS, past work proposed automatic tools to detect and fix regexes. Although th… ▽ More

    Submitted 15 December, 2022; originally announced December 2022.

    Comments: IEEE Security & Privacy 2023