H. Yu

24 papers A 2Misc 1Journal 8Unranked 13
YearRankTypeTitle / Venue / Authors
2016 conf
ICICDT
Nadine Collaert, AliReza Alian, Hiroaki Arimura, Geert Boccardi, Geert Eneman, Jacopo Franco, Tsvetan Ivanov, Dennis Lin, Jérôme Mitard, S. Ramesh, R. Rooyackers, Marc Schaekers, A. Sibaya-Hernandez, S. Sioncke, Quentin Smets, Abhitosh Vais, A. Vandooren, Anabela Veloso, Anne S. Verhulst, Devin Verreck, Niamh Waldron, Amey Walke, Liesbeth Witters, H. Yu, X. Zhou, Aaron Voon-Yew Thean
2015 J jnl
CoRR
H. Yu, C. Yang
2012 conf
VS-GAMES
H. Yu, Theodore Lim, James M. Ritchie, Raymond C. W. Sung, Sandy Louchart, Ioana A. Stanescu, Ion Roceanu, Sara de Freitas
2012 conf
Computer-Aided Diagnosis
H. Yu, E. Simon Barriga, Carla Agurto, Gilberto Zamora, Wendall Bauman, Peter Soliz
2012 J jnl
IET Commun.
B. Luo, H. Yu, X. Zhang, Z. Shen, Q. Li
2012 Misc conf
HIC
Jane Taggart, Siaw-Teng Liaw, Sarah Dennis, H. Yu, Alireza Rahimi, Bin Jalaludin, Mark F. Harris
2011 conf
Computer-Aided Diagnosis
H. Yu, E. Simon Barriga, Carla Agurto, Sebastian Echegaray, Marios S. Pattichis, Gilberto Zamora, Wendall Bauman, Peter Soliz
2011 J jnl
IET Commun.
C. Shen, H. Yu
2010 J jnl
Int. J. Robotics Autom.
H. Yu, B. Li, X. Yang, Y. Hu
2008 conf
TeNe
Carolin I. Bauer, H. Yu, Brian Boffey
2008 conf
ICEIS (4)
A. S. Atkins, L. Zhang, H. Yu, B. P. Naylor
2008 J jnl
Int. J. Control
Kai Shing Yeung, Wei-Der Chung, H. Yu
2008 J jnl
J. Glob. Optim.
S. H. Hou, H. Yu, G. Y. Chen
2007 conf
World Congress on Engineering
Rehan Ahmed, H. Yu, L. Edwards, J. R. Santisteban
2007 conf
SIP
Q. Ye, J. Jiao, J. Huang, H. Yu
2007 conf
World Congress on Engineering
H. Yu, Rehan Ahmed, H. de Villiers Lovelock, S. Davies
2003 J jnl
IEEE J. Sel. Areas Commun.
Rajarathnam Chandramouli, Rajeev Shorey, Pradip K. Srimani, X. Wang, H. Yu
2003 J jnl
Appl. Math. Lett.
H. Yu
2002 conf
CRM Workshop
André D. Bandrauk, F. Légaré, H. Yu
1997 conf
ICIP (2)
H. Yu, Gozde Bozdagi, S. Harrington
1997 conf
ICONIP (1)
A. Ramer, H. Yu
1993 A conf
IROS
H. Yu, Lakmal D. Seneviratne, S. W. E. Earles
1993 conf
ICRA (1)
H. Yu, Lakmal D. Seneviratne, S. W. E. Earles
1992 A conf
IROS
H. Yu, Lakmal D. Seneviratne, S. W. E. Earles
redb/extractors/decompiler/bninja/analysis/scores.py
← Index redb/extractors/decompiler/bninja/analysis/scores.py python
from collections import deque
from binaryninja import highlevelil
from binaryninja.enums import HighLevelILOperation


class ObfuscationScores:
    def __init__(self, hlil_function):
        self.function = hlil_function
        self._basic_blocks = list(hlil_function.basic_blocks) if hlil_function and hlil_function.basic_blocks else []
        self._block_count = len(self._basic_blocks)

    def flattened_score(self):
        """
        A heuristic for detecting control flow flattening from Tim Blazytko.
        Source: https://www.synthesis.to/2021/03/03/flattening_detection.html
        """
        if self._block_count == 0:
            return 0.0

        max_flattening_ratio = 0.0

        for basic_block in self._basic_blocks:
            dominated = get_dominated_by(basic_block)
            if not any(edge.source in dominated for edge in basic_block.incoming_edges):
                continue
            ratio = len(dominated) / self._block_count
            if ratio > max_flattening_ratio:
                max_flattening_ratio = ratio

        return max_flattening_ratio

    def MBA_score(self):
        """
        Score for MBA is obtained by the number of instructions that have at least one arithmetic operation and
        one logic operation DIVIDED by the number of instructions.
        """
        total = 0
        mba_count = 0

        for ins in self.function.instructions:
            total += 1
            if uses_mba(ins):
                mba_count += 1

        if total == 0:
            return 0.0

        return mba_count / total

def get_dominated_by(dominator):
    """
    Get the dominators that are dominated by the given dominator.
    (To recall the theory, a basic block B is called dominator for A if every path from START
    to A must include B)
    """
    result = set()
    worklist = deque([dominator])

    while worklist:
        block = worklist.popleft()
        if block in result:
            continue
        result.add(block)
        worklist.extend(block.dominator_tree_children)

    return result

_ARITHMETIC_OPS = frozenset({
    HighLevelILOperation.HLIL_ADD,
    HighLevelILOperation.HLIL_NEG,
    HighLevelILOperation.HLIL_SUB,
    HighLevelILOperation.HLIL_MUL,
    HighLevelILOperation.HLIL_DIVS,
    HighLevelILOperation.HLIL_MODS,
})

_LOGIC_OPS = frozenset({
    HighLevelILOperation.HLIL_NOT,
    HighLevelILOperation.HLIL_AND,
    HighLevelILOperation.HLIL_OR,
    HighLevelILOperation.HLIL_XOR,
    HighLevelILOperation.HLIL_LSR,
    HighLevelILOperation.HLIL_LSL,
})

_MBA_OPS = _ARITHMETIC_OPS | _LOGIC_OPS

def uses_mba(hlil_instruction):
    uses_logic = False
    uses_arithmetic = False
    stack = [hlil_instruction]

    while stack:
        instruction = stack.pop()

        if not isinstance(instruction, highlevelil.HighLevelILInstruction):
            continue

        op = instruction.operation

        if op not in _MBA_OPS:
            for operand in instruction.operands:
                if isinstance(operand, highlevelil.HighLevelILInstruction):
                    stack.append(operand)
            continue

        if op in _ARITHMETIC_OPS:
            uses_arithmetic = True
        else:
            uses_logic = True

        if uses_logic and uses_arithmetic:
            return True

        for operand in instruction.operands:
            if isinstance(operand, highlevelil.HighLevelILInstruction):
                stack.append(operand)

    return False