paint-brush
Meet the tool that automatically infers security vulnerabilities in Python codeby@tch1bo
4,616 reads
4,616 reads

Meet the tool that automatically infers security vulnerabilities in Python code

by Victor Chibotaru4mFebruary 7th, 2019
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

In January 2019 we released a tool that significantly raises the bar for detecting security vulnerabilities in Python code. We built a fully automated system that couples data flow analysis algorithms with a novel ML component and detects many more new security issues than traditional approaches. After running it on several Open Source repositories, we found and reported 35 critical security vulnerabilities from the <a href="https://www.owasp.org/index.php/Category:OWASP_Top_Ten_Project" target="_blank">OWASP Top Ten</a> list. Here’s a motivating screenshot that shows one of them:

Companies Mentioned

Mention Thumbnail
Mention Thumbnail

Coin Mentioned

Mention Thumbnail
featured image - Meet the tool that automatically infers security vulnerabilities in Python code
Victor Chibotaru HackerNoon profile picture
Victor Chibotaru

Victor Chibotaru

@tch1bo

L O A D I N G
. . . comments & more!

About Author

Victor Chibotaru HackerNoon profile picture
Victor Chibotaru@tch1bo

TOPICS

THIS ARTICLE WAS FEATURED IN...

Permanent on Arweave
Read on Terminal Reader
Read this story in a terminal
 Terminal
Read this story w/o Javascript
Read this story w/o Javascript
 Lite