Jaime C. Acosta

39 papers A 1B 3C 1Misc 1Journal 10Unranked 23
YearRankTypeTitle / Venue / Authors
2026 J jnl
Multim. Tools Appl.
Elisabeth Tchaptchet, Elie Fute Tagne, Alain B. Djimeli-Tsajio, Jaime C. Acosta, Danda B. Rawat, Charles A. Kamhoua
2025 conf
ICDM (Workshops)
Mohammad Akidul Hoque, Anuradha Choudhury, Jaime C. Acosta, Mahmud Shahriar Hossain, Monika Akbar
2025 J jnl
IEEE Access
Elisabeth Tchaptchet, Elie Fute Tagne, Jaime C. Acosta, Danda B. Rawat, Charles A. Kamhoua
2025 J jnl
IEEE Secur. Priv.
Chongqi Guan, Jiahe Zhang, Guohong Cao, Thomas F. La Porta, Jaime C. Acosta
2025 J jnl
Inf.
Elisabeth Tchaptchet, Elie Fute Tagne, Jaime C. Acosta, Danda B. Rawat, Charles A. Kamhoua
2024 J jnl
Ad Hoc Networks
Joelle Kabdjou, Elie Tagne Fute, Danda B. Rawat, Jaime C. Acosta, Charles A. Kamhoua
2024 Misc conf
ICNC
Elisabeth Tchaptchet, Elie Fute Tagne, Jaime C. Acosta, Danda B. Rawat, Charles A. Kamhoua
2024 J jnl
J. Cybersecur. Priv.
Justin Foreman, Willie L. Waters, Charles A. Kamhoua, Ahmed H. Anwar, Jaime C. Acosta, Blessing C. Dike
2023 B conf
ICCCN
Nazia Sharmin, Jaime C. Acosta, Christopher Kiekintveld
2023 J jnl
CoRR
Shanto Roy, Nazia Sharmin, Mohammad Sujan Miah, Jaime C. Acosta, Christopher Kiekintveld, Aron Laszka
2023 conf
FTC (2)
Jaime C. Acosta, Monika Akbar, Mahmud Shahriar Hossain, Veronica Rivas
2023 conf
SysCon
Nazia Sharmin, Shanto Roy, Aron Laszka, Jaime C. Acosta, Christopher Kiekintveld
2023 conf
CITS
Joelle Kabdjou, Elie Tagne Fute, Danda B. Rawat, Jaime C. Acosta, Charles A. Kamhoua
2023 J jnl
ACM Comput. Surv.
Shanto Roy, Nazia Sharmin, Jaime C. Acosta, Christopher Kiekintveld, Aron Laszka
2022 conf
DSC
Abel O. Gomez Rivera, Evan M. White, Jaime C. Acosta, Deepak K. Tosh
2022 conf
MILCOM
Jaime C. Acosta
2022 C conf
SACMAT
Jaime C. Acosta
2021 conf
MSN
Felix O. Olowononi, Ahmed H. Anwar, Danda B. Rawat, Jaime C. Acosta, Charles A. Kamhoua
2021 conf
ICDF2C
Jaime C. Acosta, Anjon Basak, Christopher Kiekintveld, Charles A. Kamhoua
2021 conf
MILCOM
Jaime C. Acosta, Stephanie Medina, Jason Ellis, Luisana Clarke, Veronica Rivas, Allison Newcomb
2021 conf
SecureComm (1)
Jaime C. Acosta, Luisana Clarke, Stephanie Medina, Monika Akbar, Mahmud Shahriar Hossain, Frederica Free-Nelson
2021 J jnl
CoRR
Shanto Roy, Nazia Sharmin, Jaime C. Acosta, Christopher Kiekintveld, Aron Laszka
2020 conf
SmartGridComm
Abel O. Gomez Rivera, Deepak K. Tosh, Jaime C. Acosta, Laurent Njilla
2020 conf
SecDev
Jaime C. Acosta, Anjon Basak, Christopher Kiekintveld, Nandi Leslie, Charles A. Kamhoua
2020 conf
ICDF2C
Edgar Padilla, Jaime C. Acosta, Christopher D. Kiekintveld
2020 B conf
GLOBECOM
Aliou Badra Sarr, Ahmed H. Anwar, Charles A. Kamhoua, Nandi Leslie, Jaime C. Acosta
2019 conf
MILCOM
David Reyes, Jaime C. Acosta, Adriana Escobar De La Torre, Salamah Salamah
2019 conf
MILCOM
Erick D. Buenrostro, Abel O. Gomez Rivera, Deepak K. Tosh, Jaime C. Acosta, Laurent Njilla
2017 conf
MILCOM
Jaime C. Acosta, Joshua McKee, Alexander Fielder, Salamah Salamah
2016 conf
HASE
Jaime C. Acosta, Salamah Salamah
2016 conf
MILCOM
Jaime C. Acosta, Edgar Padilla, John Homer
2013 conf
CODASPY
Graciela Perera, Nathan Miller, John Mela, Michael P. McGarry, Jaime C. Acosta
2012 conf
MILCOM
Jaime C. Acosta, Humberto Mendoza, Brenda G. Medina
2012 conf
MILCOM
Jaime C. Acosta, Brenda G. Medina
2011 J jnl
Speech Commun.
Jaime C. Acosta, Nigel G. Ward
2011 conf
MILCOM
Jaime C. Acosta, John D. Medrano
2009 A conf
INTERSPEECH
Jaime C. Acosta, Nigel G. Ward
2009 conf
HLT-NAACL (Student Research Workshop and Doctoral Consortium)
Jaime C. Acosta
2004 B conf
ICPADS
Diana Villa, Jaime C. Acosta, Patricia J. Teller, Bret R. Olszewski, Trevor Morgan
redb/extractors/detectiteasy.py
← Index redb/extractors/detectiteasy.py python
import inspect
from pprint import pprint
import subprocess
import json
from typing import Any
from datetime import datetime, timezone
import os
from dotenv import load_dotenv

from redb.extractors.enum import Tag
from redb.models.dataclasses import DIEinfo
from redb.extractors.extractor import Extractor

load_dotenv(override=True)

class DIEExtractor(Extractor):

    def __init__(
        self,
        filepath,
        log,
        exporters=None,
        index_prefix=None,
        elastic_index=None,
        known_benign=False,
        known_malicious=False,
        precomputed_hashes=None,
    ):
        super().__init__(
            filepath, log, exporters, index_prefix, elastic_index, known_benign, known_malicious,
            precomputed_hashes=precomputed_hashes
        )
        self.log.debug(inspect.currentframe().f_code.co_name)
        self.die_info = None
        self.die_info_dict = {}
        self.elastic_index = self.index_prefix + "-die"

    def _recursive_entry(self, die_dict, master_key):
        self.log.debug(inspect.currentframe().f_code.co_name)
        if master_key:
            self.die_info_dict[master_key] = {}
        else:
            self.die_info_dict = {}
        for value in die_dict:
            if "type" in value:
                type_key = value["type"].lower().replace(" ", "_")
                name = value.get("name", "")
                version = f"({value.get('version')})" if value.get("version") else ""
                info = f"[{value.get('info')}]" if value.get("info") else ""

                if master_key:
                    self.die_info_dict[master_key][type_key] = f"{name}"
                    self.die_info_dict[master_key][f'{type_key}(full)'] = f"{name}{version}{info}"
                else:
                    self.die_info_dict[type_key] = f"{name}"
                    self.die_info_dict[f'{type_key}(full)'] = f"{name}{version}{info}"

            elif "parentfilepart" in value:
                child_key = (
                    value["parentfilepart"].lower().replace(" ", "_")
                    + "."
                    + value["filetype"].lower().replace(" ", "_")
                )
                if master_key:
                    self._recursive_entry(value["values"], f"{master_key}.{child_key}")
                else:
                    self._recursive_entry(value["values"], f"{child_key}")

    def _extract_dieinfo(self):
        """
        Execute a command-line binary with arguments and parse its JSON output.

        :param command: The command or path to the binary to execute
        :param args: Additional arguments to pass to the command
        :return: Parsed JSON output as a Python object
        """
        self.log.debug(inspect.currentframe().f_code.co_name)

        # Construct the full command
        # command = "nfdc" # UNCOMMENT FOR PROD
        # command = "/Users/p4c0/_tools/NFD.app/Contents/MacOS/nfdc" # COMMENT FOR TESTING ON MAC
        command = os.getenv("DIE_PATH")
        args = ["-durj", self.filepath]
        full_command = [command] + list(args)
        TIMEOUT = int(os.getenv("DIE_TIMEOUT", "180"))

        try:
            # Execute the command and capture its output
            result = subprocess.run(
                full_command,
                capture_output=True,
                text=True,
                check=True,
                timeout=TIMEOUT,
            )

            # Parse the JSON output
            nfdc_output = json.loads(result.stdout)

            # Extract the DIE information from the json output
            for die_entry in nfdc_output["detects"]:
                if die_entry["parentfilepart"] == "Header":
                    master_key = (
                        die_entry["parentfilepart"].lower().replace(" ", "_")
                        + "."
                        + die_entry["filetype"].lower().replace(" ", "_")
                    )
                    self._recursive_entry(die_entry["values"], None)

            # pprint(json.dumps(self.die_info_dict, indent=2)) #debug
            self.die_info = DIEinfo(result.stdout, self.die_info_dict)
            self.log.debug(f"NFDC-DIE JSON dump: todo")
        except subprocess.TimeoutExpired:
            self.log.error(f"The DIE command timed out after {TIMEOUT} seconds")
            return None
        except subprocess.CalledProcessError as e:
            self.log.error(f"Error executing DIE command: {e}")
            self.log.error(f"Command output (stderr): {e.stderr}")
            return None
        except json.JSONDecodeError as e:
            self.log.error(f"Error parsing DIE JSON output: {e}")
            self.log.error(f"Raw output: {result.stdout}")
            return None

    def prepare_export_data(self, exporter_type: str) -> Any:
        if exporter_type == "ElasticsearchExporter":
            return self.die_info
        elif exporter_type == "ClickHouseExporter":
            # Convert DIE info to JSON string
            die_info_json = json.dumps(self.die_info_dict)
            
            data = [[
                self.sha256,
                self.md5,
                self.sha1,
                die_info_json,
                datetime.now(timezone.utc)
            ]]
            
            column_names = [
                'sha256', 'md5', 'sha1', 'die_info', 'analysis_date'
            ]
            
            column_type_names = [
                'String', 'String', 'String', 'JSON', 'DateTime64(3, \'UTC\')'
            ]
            
            return (data, column_names, column_type_names)

    def get_clickhouse_table(self) -> str:
        return "redb_die"

    def extract(self):
        self.log.debug(inspect.currentframe().f_code.co_name)
        try:
            self._extract_dieinfo()
            
            # Check if there's a packer in the DIE results
            is_packed = False
            if self.die_info_dict:
                # Check if 'packer' exists in the DIE results
                is_packed = bool(self.die_info_dict.get('packer'))
            
            return self.die_info  # Return the extracted data instead of exporting directly
        except Exception as e:
            self.log.error(f"Error extracting DIE information: {e}")
            return None

    def tag(self):
        return Tag.DIEC.value