YoVDO

Kill All Humans - Bugs - Machine Learning to the Rescue of Code Review

Offered By: 44CON Information Security Conference via YouTube

Tags

44CON Courses Machine Learning Courses SQL Injection Courses Vulnerability Scanning Courses

Course Description

Overview

Explore machine learning techniques for enhancing code review and static analysis in this 51-minute conference talk from 44CON 2018. Discover how supervised learning algorithms can be applied to automatically triage and classify vulnerabilities like SQL injection and Cross-Site Scripting, reducing false positives and human fatigue in large-scale applications. Learn about the effectiveness of various attributes used in classification, including location, data flow sources, API, and dynamic expressions. Gain insights into the open-source "Find Security Bugs ML" tools for building enriched datasets and classifying findings. Witness demonstrations of large-scale vulnerability scanning with prioritized issue presentation and classification verification. Uncover how these techniques led to the discovery of 0-day vulnerabilities in Java libraries, including the Spring Framework, and learn how to apply similar methods to enterprise applications and third-party libraries, even without source code access.

Syllabus

Kill All Humans... Bugs! - Philippe Arteau at 44CON 2018


Taught by

44CON Information Security Conference

Related Courses

Introduction to Artificial Intelligence
Stanford University via Udacity
Natural Language Processing
Columbia University via Coursera
Probabilistic Graphical Models 1: Representation
Stanford University via Coursera
Computer Vision: The Fundamentals
University of California, Berkeley via Coursera
Learning from Data (Introductory Machine Learning course)
California Institute of Technology via Independent