Han Woo Park

103 papers Journal 100Unranked 2
YearRankTypeTitle / Venue / Authors
2026 J jnl
Inf. Process. Manag.
Yu-Peng Zhu, Si Qi Liang, Ya Fang Zou, Han Woo Park
2025 J jnl
Inf.
James A. Danowski, Han Woo Park
2025 J jnl
Syst.
Yu-Peng Zhu, Lina Xin, Huimin Wang, Han Woo Park
2025 J jnl
Inf.
Han Woo Park, Jae-Hun Kim, Norhayatun Syamilah Osman
2025 J jnl
Inf.
Norhayatun Syamilah Osman, Jae-Hun Kim, Jae-Hong Park, Han Woo Park
2025 J jnl
Syst.
Camille Velasco Lim, Han Woo Park
2025 J jnl
Inf.
Tianyi Tao, Han Woo Park
2025 J jnl
Digit.
Camille Velasco Lim, Han Woo Park
2024 J jnl
Digit.
Camille Velasco Lim, Yu-Peng Zhu, Muhammad Omar, Han Woo Park
2024 J jnl
Scientometrics
Han Woo Park
2024 J jnl
Scientometrics
Han Woo Park, George A. Barnett
2024 J jnl
Syst.
Catherine Huh, Han Woo Park
2023 J jnl
Scientometrics
George A. Barnett, Han Woo Park
2023 J jnl
Educ. Inf. Technol.
J. Patrick Biddix, Hyejin Park, Gresham D. Collom, Misty R. Bailey, Han Woo Park
2023 J jnl
IT Prof.
Jae Hun Kim, Han Woo Park
2021 J jnl
J. Data Inf. Sci.
Hyejin Park, Hansung Kim, Han Woo Park
2021 J jnl
Scientometrics
Miyoung Chong, Han Woo Park
2021 J jnl
Digit. Scholarsh. Humanit.
Seyed Mohammad Jafar Jalali, Han Woo Park, Iman Raeesi Vanani, Kim-Hung Pho
2020 J jnl
Scientometrics
Jungwon Yoon, Han Woo Park
2019 J jnl
Inf. Process. Manag.
Sejung Park, Dahoon Chung, Han Woo Park
2019 J jnl
Scientometrics
Naveed Naeem Abbas, Tanveer Ahmed, Syed Habib Ullah Shah, Muhammad Omar, Han Woo Park
2019 J jnl
Scientometrics
Han Woo Park, Jungwon Yoon
2018 J jnl
Scientometrics
Kim Holmberg, Han Woo Park
2018 J jnl
Gov. Inf. Q.
Miyoung Chong, Abdulrahman Habib, Nicholas E. Evangelopoulos, Han Woo Park
2018 ch.
Encyclopedia of Social Network Analysis and Mining. 2nd Ed.
Chung Joo Chung, George A. Barnett, Han Woo Park
2018 J jnl
Scientometrics
Hyejin Park, Han Woo Park
2017 J jnl
J. Informetrics
Loet Leydesdorff, Han Woo Park
2017 J jnl
Scientometrics
Muhammad Omar, Arif Mehmood, Gyu Sang Choi, Han Woo Park
2017 J jnl
Scientometrics
Mi Kyung Lee, Ho Young Yoon, Marc Smith, Hyejin Park, Han Woo Park
2017 J jnl
Gov. Inf. Q.
George A. Barnett, Weiai Wayne Xu, Jianxun Chu, Ke Jiang, Catherine Huh, Ji-Young Park, Han Woo Park
2017 J jnl
Scientometrics
Jungwon Yoon, Joshua SungWoo Yang, Han Woo Park
2016 J jnl
Telematics Informatics
Se Jung Park, Ji-Young Park, Yon Soo Lim, Han Woo Park
2016 J jnl
CoRR
Loet Leydesdorff, Han Woo Park
2016 J jnl
Scientometrics
Arif Mehmood, Gyu Sang Choi, Otto F. von Feigenblatt, Han Woo Park
2016 J jnl
CoRR
Han Woo Park, Jungwon Yoon, Loet Leydesdorff
2016 J jnl
Telematics Informatics
Yun-Cheol Heo, Ji-Young Park, Ji-Young Kim, Han Woo Park
2016 J jnl
Scientometrics
Han Woo Park, Jungwon Yoon, Loet Leydesdorff
2016 J jnl
Scientometrics
Gohar Feroz Khan, Sungjoon Lee, Ji-Young Park, Han Woo Park
2016 J jnl
Gov. Inf. Q.
Kyujin Jung, Han Woo Park
2015 J jnl
Gov. Inf. Q.
Kyujin Jung, Han Woo Park
2015 conf
HICSS
George A. Barnett, Jeanette B. Ruiz, Han Woo Park
2015 J jnl
Comput. Educ.
J. Patrick Biddix, Chung Joo Chung, Han Woo Park
2015 J jnl
Online Inf. Rev.
Weiai Wayne Xu, Ji-Young Park, Han Woo Park
2015 J jnl
J. Assoc. Inf. Sci. Technol.
Sujin Choi, Joshua SungWoo Yang, Han Woo Park
2014 J jnl
Scientometrics
George A. Barnett, Han Woo Park, Ke Jiang, Chuan Tang, Isidro F. Aguillo
2014 J jnl
Scientometrics
Loet Leydesdorff, Han Woo Park, Balázs Lengyel
2014 J jnl
New Media Soc.
Sujin Choi, Han Woo Park
2014 J jnl
Scientometrics
Han Woo Park
2014 J jnl
CoRR
Loet Leydesdorff, Han Woo Park
2014 J jnl
Gov. Inf. Q.
Kyujin Jung, Han Woo Park
2014 J jnl
Aslib J. Inf. Manag.
Myunggoon Choi, Yoonmo Sang, Han Woo Park
2014 J jnl
Gov. Inf. Q.
Jang-Hyun Kim, Han Woo Park
2014 J jnl
Online Inf. Rev.
Gohar Feroz Khan, Ho Young Yoon, Jiyoung Kim, Han Woo Park
2014 J jnl
J. Assoc. Inf. Sci. Technol.
Loet Leydesdorff, Han Woo Park, Caroline S. Wagner
2014 J jnl
Scientometrics
Chung Joo Chung, Han Woo Park
2014 J jnl
Scientometrics
Han Woo Park
2014 J jnl
J. Comput. Mediat. Commun.
Steven Sams, Han Woo Park
2014 J jnl
Scientometrics
Han Woo Park
2013 J jnl
J. Informetrics
Han Woo Park, Loet Leydesdorff
2013 J jnl
Aslib Proc.
Yeon-Ok Lee, Han Woo Park
2013 J jnl
CoRR
Loet Leydesdorff, Han Woo Park, Caroline S. Wagner
2013 J jnl
CoRR
Loet Leydesdorff, Caroline S. Wagner, Han Woo Park, Jonathan Adams
2013 J jnl
Gov. Inf. Q.
Gohar Feroz Khan, Han Woo Park
2013 J jnl
New Media Soc.
Yon Soo Lim, Han Woo Park
2012 J jnl
CoRR
Loet Leydesdorff, Han Woo Park, Balázs Lengyel
2012 J jnl
Scientometrics
Gohar Feroz Khan, Seong Eun Cho, Han Woo Park
2012 J jnl
Scientometrics
Gohar Feroz Khan, Han Woo Park
2012 J jnl
Scientometrics
Moosung Lee, Han Woo Park
2012 J jnl
Scientometrics
Seong Eun Cho, Han Woo Park
2012 J jnl
Scientometrics
Ki-Seok Kwon, Han Woo Park, Minho So, Loet Leydesdorff
2012 J jnl
J. Comput. Mediat. Commun.
Chien-leng Hsu, Han Woo Park
2012 J jnl
Gov. Inf. Q.
Chien-leng Hsu, Han Woo Park
2012 J jnl
Scientometrics
Minjeong Kim, Han Woo Park
2012 J jnl
Scientometrics
Matthew A. Shapiro, Han Woo Park
2012 J jnl
J. Comput. Mediat. Commun.
Chang Woo-young, Han Woo Park
2012 J jnl
Scientometrics
Sujin Choi, Ji-Young Park, Han Woo Park
2012 J jnl
Scientometrics
Chung Joo Chung, Han Woo Park
2011 J jnl
Scientometrics
Gohar Feroz Khan, Junghoon Moon, Han Woo Park, Bobby Swar, Jae Jeung Rho
2011 J jnl
Scientometrics
George A. Barnett, Catherine Huh, Youngju Kim, Han Woo Park
2011 J jnl
Internet High. Educ.
J. Patrick Biddix, Chung Joo Chung, Han Woo Park
2011 J jnl
Gov. Inf. Q.
Yon Soo Lim, Han Woo Park
2011 J jnl
J. Assoc. Inf. Sci. Technol.
Gohar Feroz Khan, Han Woo Park
2011 J jnl
Scientometrics
Gohar Feroz Khan, Junghoon Moon, Han Woo Park
2011 conf
EISIC
James A. Danowski, Han Woo Park
2010 J jnl
J. Assoc. Inf. Sci. Technol.
Jang-Hyun Kim, George A. Barnett, Han Woo Park
2010 J jnl
Scientometrics
Chang Hoon Yang, Han Woo Park, Jungeun Heo
2010 J jnl
J. Comput. Mediat. Commun.
Han Woo Park
2010 J jnl
Technol. Anal. Strateg. Manag.
Matthew A. Shapiro, Minho So, Han Woo Park
2009 J jnl
Scientometrics
Han Woo Park, Loet Leydesdorff
2009 J jnl
CoRR
Han Woo Park, Loet Leydesdorff
2009 J jnl
Gov. Inf. Q.
Han Woo Park, Randolph Kluver
2008 J jnl
J. Comput. Mediat. Commun.
Han Woo Park, Mike Thelwall
2008 J jnl
Scientometrics
Han Woo Park, Loet Leydesdorff
2008 J jnl
New Media Soc.
J. Patrick Biddix, Han Woo Park
2007 J jnl
J. Comput. Mediat. Commun.
Hyo Kim, Gwang Jae Kim, Han Woo Park, Ronald E. Rice
2006 J jnl
New Media Soc.
Han Woo Park, Mike Thelwall
2005 J jnl
Scientometrics
Han Woo Park, Heung Deug Hong, Loet Leydesdorff
2005 J jnl
Ann. des Télécommunications
George A. Barnett, Han Woo Park
2004 J jnl
Telematics Informatics
Gary W. Ozanich, Chiung-Wen Hsu, Han Woo Park
2004 J jnl
New Media Soc.
Han Woo Park, Chun-Sik Kim, George A. Barnett
2003 J jnl
J. Comput. Mediat. Commun.
Han Woo Park, Mike Thelwall
2002 J jnl
First Monday
Han Woo Park
2002 J jnl
J. Assoc. Inf. Sci. Technol.
Han Woo Park, George A. Barnett, In-Yong Nam
tests/integration/test_basicproperties.py
← Index tests/integration/test_basicproperties.py python
"""
Integration tests for the BasicPropertiesExtractor class.
"""
import pytest
import os
from unittest.mock import Mock, patch, MagicMock

pytestmark = [pytest.mark.integration]


class TestBasicPropertiesExtractorInitialization:
    """Tests for BasicPropertiesExtractor initialization."""

    def test_initialization(self, elf_binary_path, mock_logger):
        """Test basic initialization."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            assert extractor.filepath == elf_binary_path
            assert extractor.basic_properties is None
            assert extractor.is_packed is None
            assert extractor.is_fat is None
            assert extractor.parent_sha256 is None
            assert extractor.child_sha256 is None
            assert extractor.child_architecture is None
            assert extractor.child_filetype is None

    def test_initialization_with_fat_params(self, elf_binary_path, mock_logger):
        """Test initialization with FAT Mach-O parameters."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            child_hashes = ["abc123", "def456"]
            child_archs = ["x86_64", "arm64"]
            child_types = ["macho", "macho"]

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                is_fat=True,
                child_sha256=child_hashes,
                child_architecture=child_archs,
                child_filetype=child_types
            )

            assert extractor.is_fat is True
            assert extractor.child_sha256 == child_hashes
            assert extractor.child_architecture == child_archs
            assert extractor.child_filetype == child_types

    def test_initialization_with_parent_sha256(self, elf_binary_path, mock_logger):
        """Test initialization with parent_sha256 for slice binaries."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            parent_hash = "parent_sha256_hash_here"

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                parent_sha256=parent_hash
            )

            assert extractor.parent_sha256 == parent_hash

    def test_elastic_index_suffix(self, elf_binary_path, mock_logger):
        """Test that elastic_index has correct suffix."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            assert "-basic_properties" in extractor.elastic_index


class TestBasicPropertiesExtractorTag:
    """Tests for tag method."""

    def test_tag_value(self, elf_binary_path, mock_logger):
        """Test that tag returns correct value."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor
        from redb.extractors.enum import Tag

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            assert extractor.tag() == Tag.BASIC_PROPERTIES.value
            assert extractor.tag() == "basic_properties"


class TestBasicPropertiesExtract:
    """Tests for extract method."""

    def test_extract_elf_binary(self, elf_binary_path, mock_logger):
        """Test extracting properties from ELF binary."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor
        from redb.models.dataclasses import BasicProperties

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            assert isinstance(result, BasicProperties)
            assert result.sample_name == os.path.basename(elf_binary_path)
            assert result.filesize > 0
            assert result.file_entropy >= 0
            assert result.filetype is not None
            assert result.filetype_mime is not None
            assert result.filetype_magika is not None

    def test_extract_pe_binary(self, pe_binary_path, mock_logger):
        """Test extracting properties from PE binary."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor
        from redb.models.dataclasses import BasicProperties

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(pe_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            assert isinstance(result, BasicProperties)
            assert result.filesize > 0
            # PE file should be detected
            assert "PE" in result.filetype or "executable" in result.filetype.lower()

    def test_extract_text_file(self, temp_text_file, mock_logger):
        """Test extracting properties from text file."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(temp_text_file, mock_logger)

            result = extractor.extract()

            assert result is not None
            assert "text" in result.filetype.lower() or "ASCII" in result.filetype
            assert result.file_entropy >= 0

    def test_extract_stores_in_basic_properties(self, elf_binary_path, mock_logger):
        """Test that extract stores result in basic_properties attribute."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            assert extractor.basic_properties is None
            result = extractor.extract()
            assert extractor.basic_properties is result


class TestBasicPropertiesFiletype:
    """Tests for file type detection."""

    def test_elf_filetype(self, elf_binary_path, mock_logger):
        """Test ELF file type detection."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            # Should detect as ELF
            assert "ELF" in result.filetype

    def test_pe_filetype_mime(self, pe_binary_path, mock_logger):
        """Test PE file type MIME detection."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(pe_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            # PE MIME types (varies by libmagic version)
            assert "dosexec" in result.filetype_mime or "x-msdownload" in result.filetype_mime or "portable-executable" in result.filetype_mime

    def test_text_filetype_mime(self, temp_text_file, mock_logger):
        """Test text file type MIME detection."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(temp_text_file, mock_logger)

            result = extractor.extract()

            assert result is not None
            # Text MIME types
            assert "text" in result.filetype_mime


class TestBasicPropertiesEntropy:
    """Tests for entropy calculation in BasicPropertiesExtractor."""

    def test_entropy_reasonable_range(self, elf_binary_path, mock_logger):
        """Test that entropy is within reasonable range (0-8)."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            assert 0 <= result.file_entropy <= 8

    def test_entropy_rounded(self, elf_binary_path, mock_logger):
        """Test that entropy is rounded to 3 decimal places."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            # Check rounding to 3 decimal places
            entropy_str = str(result.file_entropy)
            if '.' in entropy_str:
                decimal_places = len(entropy_str.split('.')[1])
                assert decimal_places <= 3


class TestBasicPropertiesFilesize:
    """Tests for file size calculation."""

    def test_filesize_matches_actual(self, elf_binary_path, mock_logger):
        """Test that filesize matches actual file size."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            actual_size = os.path.getsize(elf_binary_path)
            assert result.filesize == actual_size

    def test_filesize_matches_binary_length(self, elf_binary_path, mock_logger, elf_binary_content):
        """Test that filesize matches binary content length."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result.filesize == len(elf_binary_content)


class TestBasicPropertiesPrepareExportData:
    """Tests for prepare_export_data method."""

    def test_prepare_export_elasticsearch(self, elf_binary_path, mock_logger):
        """Test prepare_export_data for Elasticsearch."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)
            extractor.extract()

            result = extractor.prepare_export_data("ElasticsearchExporter")

            assert result is extractor.basic_properties

    def test_prepare_export_clickhouse(self, elf_binary_path, mock_logger):
        """Test prepare_export_data for ClickHouse."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)
            extractor.extract()

            result = extractor.prepare_export_data("ClickHouseExporter")

            # Should return tuple of (data, column_names, column_type_names)
            assert isinstance(result, tuple)
            assert len(result) == 3

            data, column_names, column_type_names = result

            assert isinstance(data, list)
            assert len(data) == 1  # One row
            assert isinstance(column_names, list)
            assert isinstance(column_type_names, list)

            # Check expected columns
            assert 'sha256' in column_names
            assert 'md5' in column_names
            assert 'sha1' in column_names
            assert 'filesize' in column_names
            assert 'file_entropy' in column_names
            assert 'filetype' in column_names
            assert 'filetype_mime' in column_names
            assert 'filetype_magika' in column_names
            # New FAT/child columns
            assert 'parent_sha256' in column_names
            assert 'child_sha256' in column_names
            assert 'child_architecture' in column_names
            assert 'child_filetype' in column_names
            assert 'is_fat' in column_names

    def test_prepare_export_clickhouse_data_types(self, elf_binary_path, mock_logger):
        """Test that ClickHouse export data has correct types."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)
            extractor.extract()

            data, column_names, column_type_names = extractor.prepare_export_data("ClickHouseExporter")

            row = data[0]

            # Check that sha256 is a string with correct length
            sha256_idx = column_names.index('sha256')
            assert isinstance(row[sha256_idx], str)
            assert len(row[sha256_idx]) == 64

            # Check that filesize is an integer
            filesize_idx = column_names.index('filesize')
            assert isinstance(row[filesize_idx], int)

            # Check that file_entropy is a float
            entropy_idx = column_names.index('file_entropy')
            assert isinstance(row[entropy_idx], float)


class TestBasicPropertiesClickHouseTable:
    """Tests for get_clickhouse_table method."""

    def test_clickhouse_table_name(self, elf_binary_path, mock_logger):
        """Test correct ClickHouse table name."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            assert extractor.get_clickhouse_table() == "redb_basic_properties"


class TestBasicPropertiesExportData:
    """Tests for export_data method."""

    def test_export_data_with_print_exporter(self, elf_binary_path, mock_logger, mock_print_exporter, capsys):
        """Test export_data with PrintExporter."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                exporters=[mock_print_exporter]
            )

            result = extractor.export_data()

            assert result is True

    def test_export_data_empty_exporters(self, elf_binary_path, mock_logger):
        """Test export_data with no exporters."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                exporters=[]
            )

            result = extractor.export_data()

            # Should succeed with no exporters
            assert result is True


class TestBasicPropertiesMagika:
    """Tests for Magika file type detection."""

    def test_magika_elf_detection(self, elf_binary_path, mock_logger):
        """Test Magika detection of ELF files."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            # Magika should detect ELF
            assert result.filetype_magika == "elf" or "elf" in result.filetype_magika.lower()

    def test_magika_pe_detection(self, pe_binary_path, mock_logger):
        """Test Magika detection of PE files."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(pe_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            # Magika should detect PE
            assert "pe" in result.filetype_magika.lower() or "exe" in result.filetype_magika.lower()


class TestBasicPropertiesFATSupport:
    """Tests for FAT Mach-O and child file support."""

    def test_extract_with_fat_flag(self, elf_binary_path, mock_logger):
        """Test extraction with is_fat flag set."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                is_fat=True
            )

            result = extractor.extract()

            assert result is not None
            assert result.is_fat is True

    def test_extract_with_child_hashes(self, elf_binary_path, mock_logger):
        """Test extraction with child_sha256 provided."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            child_hashes = ["abc123def456", "789ghi012jkl"]

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                child_sha256=child_hashes
            )

            result = extractor.extract()

            assert result is not None
            assert result.child_sha256 == child_hashes

    def test_extract_with_child_architecture(self, elf_binary_path, mock_logger):
        """Test extraction with child_architecture provided."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            child_archs = ["x86_64", "arm64"]

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                child_architecture=child_archs
            )

            result = extractor.extract()

            assert result is not None
            assert result.child_architecture == child_archs

    def test_extract_with_child_filetype(self, elf_binary_path, mock_logger):
        """Test extraction with child_filetype provided."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            child_types = ["macho", "macho"]

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                child_filetype=child_types
            )

            result = extractor.extract()

            assert result is not None
            assert result.child_filetype == child_types

    def test_clickhouse_export_with_fat_data(self, elf_binary_path, mock_logger):
        """Test ClickHouse export includes FAT-related fields correctly."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            child_hashes = ["abc123", "def456"]
            child_archs = ["x86_64", "arm64"]
            child_types = ["macho", "macho"]

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                is_fat=True,
                child_sha256=child_hashes,
                child_architecture=child_archs,
                child_filetype=child_types,
                parent_sha256=None  # FAT container has no parent
            )
            extractor.extract()

            data, column_names, column_type_names = extractor.prepare_export_data("ClickHouseExporter")
            row = data[0]

            # Check FAT fields
            is_fat_idx = column_names.index('is_fat')
            assert row[is_fat_idx] is True

            child_sha256_idx = column_names.index('child_sha256')
            assert row[child_sha256_idx] == child_hashes

            child_arch_idx = column_names.index('child_architecture')
            assert row[child_arch_idx] == child_archs

            child_type_idx = column_names.index('child_filetype')
            assert row[child_type_idx] == child_types

    def test_clickhouse_export_for_slice(self, elf_binary_path, mock_logger):
        """Test ClickHouse export for a slice binary with parent_sha256."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            parent_hash = "parent_container_sha256_hash"

            extractor = BasicPropertiesExtractor(
                elf_binary_path,
                mock_logger,
                parent_sha256=parent_hash
            )
            extractor.extract()

            data, column_names, column_type_names = extractor.prepare_export_data("ClickHouseExporter")
            row = data[0]

            parent_idx = column_names.index('parent_sha256')
            assert row[parent_idx] == parent_hash

    def test_default_fat_fields_are_none_or_empty(self, elf_binary_path, mock_logger):
        """Test that FAT-related fields default to None/empty for non-FAT binaries."""
        from redb.extractors.basicproperties import BasicPropertiesExtractor

        with patch('redb.settings.ELASTIC_BINARIES_COLLECTION', 'test'):
            extractor = BasicPropertiesExtractor(elf_binary_path, mock_logger)

            result = extractor.extract()

            assert result is not None
            assert result.is_fat is None
            assert result.child_sha256 is None
            assert result.child_architecture is None
            assert result.child_filetype is None


@pytest.mark.unit
@pytest.mark.dataclass
class TestBasicPropertiesDataclass:
    """Tests for BasicProperties dataclass structure."""

    def test_dataclass_has_all_expected_fields(self):
        """Test that BasicProperties dataclass has all expected fields."""
        from redb.models.dataclasses import BasicProperties

        # Create a sample instance
        bp = BasicProperties(
            filename="test.exe",
            sample_name="test.exe",
            filesize=1024,
            filetype="PE32",
            filetype_mime="application/x-dosexec",
            filetype_magika="pebin",
            file_entropy=6.5
        )

        # Check required fields
        assert bp.filename == "test.exe"
        assert bp.sample_name == "test.exe"
        assert bp.filesize == 1024
        assert bp.filetype == "PE32"
        assert bp.filetype_mime == "application/x-dosexec"
        assert bp.filetype_magika == "pebin"
        assert bp.file_entropy == 6.5

        # Check optional fields default to None
        assert bp.is_packed is None
        assert bp.is_fat is None
        assert bp.child_sha256 is None
        assert bp.child_architecture is None
        assert bp.child_filetype is None

    def test_dataclass_with_optional_fat_fields(self):
        """Test BasicProperties dataclass with FAT-related optional fields."""
        from redb.models.dataclasses import BasicProperties

        bp = BasicProperties(
            filename="universal.app",
            sample_name="universal.app",
            filesize=2048,
            filetype="Mach-O universal",
            filetype_mime="application/x-mach-binary",
            filetype_magika="macho",
            file_entropy=7.2,
            is_fat=True,
            child_sha256=["hash1", "hash2"],
            child_architecture=["x86_64", "arm64"],
            child_filetype=["macho", "macho"]
        )

        assert bp.is_fat is True
        assert bp.child_sha256 == ["hash1", "hash2"]
        assert bp.child_architecture == ["x86_64", "arm64"]
        assert bp.child_filetype == ["macho", "macho"]