Kai Cui

72 papers B 1C 4Journal 51Unranked 16
YearRankTypeTitle / Venue / Authors
2026 J jnl
Adv. Eng. Softw.
Kai Cui, Bohan Wu, Wenbin Xiao, Ran Yuan, Yi He
2026 J jnl
Mach. Learn.
Kai Cui, Wan Li
2026 J jnl
CoRR
Tobias Schmidt, Kai Cui
2026 J jnl
IEEE Trans. Netw.
Kai Cui, Liangbin Gao, Xianjun Deng, Shenghao Liu, Lingzhi Yi, Shibo He, Hongwei Lu
2026 J jnl
IEEE Trans. Comput. Soc. Syst.
Kai Cui, Jia Li, Yu Liu, Xuesong Zhang, Zhenzhen Hu, Meng Wang
2026 J jnl
Microelectron. J.
Hongchao Zheng, Xiao Bi, Tao Dong, Kai Cui, Yang Li, Yang Hong, Xiaohong Wu
2025 J jnl
Sci. China Inf. Sci.
Xiyu Wang, Xiaolin Lv, Wenming Li, Dehan Wang, Kai Cui, Wenhua Chen
2025 C conf
VINCI
Cong Chen, Shuai Chen, Kai Cui, Zhaoman Zhong
2025 J jnl
ACM Trans. Multim. Comput. Commun. Appl.
Kai Cui, Shenghao Liu, Wei Feng, Xianjun Deng, Liangbin Gao, Minmin Cheng, Hongwei Lu, Laurence T. Yang
2025 J jnl
J. Vis.
Cong Chen, Shuai Chen, Kai Cui, Zhaoman Zhong
2025 J jnl
IEEE Trans. Geosci. Remote. Sens.
Kai Cui, Minfeng Xing, Jiali Shang, Xin Zhou, JinFei Wang
2025 J jnl
ACM Journal on Computing and Cultural Heritage
Yumin Du, Qinglin Guo, Mengyu Wu, Yanwu Wang, Kai Cui, Manli Sun, Jun Li
2025 J jnl
Int. J. Appl. Earth Obs. Geoinformation
Minfeng Xing, Kai Cui, Taifeng Dong, Ming Ma, Xin Zhou, Yi Zhang
2025 J jnl
Int. J. Data Sci. Anal.
Kai Cui
2025 J jnl
CoRR
Jun Wang, Yunxiang Yao, Wenwei Kuang, Runze Mao, Zhenhao Sun, Zhuang Tao, Ziyang Zhang, Dengyu Li, Jiajun Chen, Zhili Wang, Kai Cui, Congzhi Cai, Longwen Lan, Ken Zhang
2025 J jnl
Symmetry
Kai Cui, Qingpo Xu, Yabin Ding, Jiangping Mei, Ying He, Haitao Liu
2025 J jnl
IEEE Trans. Instrum. Meas.
Kai Cui, Changlong Wang, Chunheng Liu, Feng Zhou
2025 J jnl
CoRR
Kai Cui, Jia Li, Yu Liu, Xuesong Zhang, Zhenzhen Hu, Meng Wang
2025 J jnl
ACM Journal on Computing and Cultural Heritage
Li Yu, Kai Cui, Xiang Zhang, Donghua Wang, Xiangpeng Yu
2025 J jnl
Appl. Math. Lett.
Jingwe Yu, Li Li, Fajunn Yu, Kai Cui
2024 J jnl
J. Comput. Phys.
Siyuan Chang, Jun Liu, Kai Cui
2024 J jnl
Connect. Sci.
Yuanyuan Yi, Kai Cui, Minghua Xu, Lingzhi Yi, Kun Yi, Xinlei Zhou, Shenghao Liu, Gefei Zhou
2024 conf
PRCV (12)
Rui Zhao, Jinghua Wang, Yongyong Chen, Zimu Zheng, Kai Cui, Jingyong Su
2024 J jnl
Sensors
Zhenyu Ma, Haili Yu, Kai Cui, Yang Yu, Chen Tao
2024 J jnl
Remote. Sens.
Kai Cui, Changlong Wang, Feng Zhou, Chunheng Liu, Yongchan Gao, Weike Feng
2024 B conf
PIMRC
Kai Cui, Changlong Wang, Yongchan Gao, Chunheng Liu, Weike Feng, Feng Zhou
2024 J jnl
IEEE Trans. Ind. Informatics
Zhouhua Peng, Kai Cui, Huijuan Li, Nan Gu, Lu Liu, Dan Wang
2024 J jnl
IEEE Internet Things J.
Peiguang Jing, Kai Cui, Jing Zhang, Yun Li, Yuting Su
2024 conf
PerCom Workshops
Quan Zhou, Kai Cui, Weilin Mao, Zhong Chen, Youmin Hu, Dongxu Lin
2024 C conf
IGARSS
Kai Cui, Zhiming Lu, Yong Fu, Yi Ding, Minfeng Xing, Haitao Lyu, Jiang Qian
2023 C conf
IPCCC
Fan Zhang, Beibei Xu, Kai Cui
2023 J jnl
Commun. Nonlinear Sci. Numer. Simul.
Yiqing Shen, Shiyao Li, Shengping Liu, Kai Cui, Guannan Zheng
2023 J jnl
IEEE Trans. Multim.
Peiguang Jing, Kai Cui, Weili Guan, Liqiang Nie, Yuting Su
2023 J jnl
ACM Trans. Web
Yingguang Yang, Renyu Yang, Yangyang Li, Kai Cui, Zhiqin Yang, Yue Wang, Jie Xu, Haiyong Xie
2022 J jnl
Symmetry
Kai Cui, Xue Jiang
2022 conf
ITSC
Kai Cui, Huijuan Li, Yun Jing, Lu Liu, Dan Wang
2022 J jnl
CoRR
Yingguang Yang, Renyu Yang, Yangyang Li, Kai Cui, Zhiqin Yang, Yue Wang, Jie Xu, Haiyong Xie
2021 J jnl
IEEE Trans. Ind. Electron.
Shuo Chen, Xin Huo, Hui Zhao, Kai Cui, Yu Yao
2021 conf
AIAM (ACM)
Fei Jia, Ming Xu, Kai Cui
2021 J jnl
J. Comput. Inf. Sci. Eng.
Weiwei Qian, Yu Guo, Kai Cui, Pengxing Wu, Weiguang Fang, Daoyuan Liu
2021 J jnl
Int. J. Robotics Autom.
Guoqi Zeng, Yu Bai, Chunlei Liu, Kai Cui, Huanyin Yue
2021 conf
SimuTools
Bai Shi, Kai Cui, Jihong Jiang, Huaizong Shao
2021 conf
AIAM (ACM)
Fei Jia, Kai Cui, Fan Zhang
2021 conf
AIAM (ACM)
Ming Xu, Hongquan Bao, Kai Cui
2021 J jnl
Axioms
Xue Jiang, Kai Cui
2020 J jnl
ACM Journal on Computing and Cultural Heritage
Yumin Du, Wenwu Chen, Kai Cui, Jingke Zhang, Zhuo Chen, Qiyong Zhang
2017 conf
CISP-BMEI
Kai Cui, Hua Cai, Yao Zhang, Huan Chen
2017 J jnl
Comput. Electr. Eng.
Kai Cui, Kuanjiu Zhou, Tie Qiu, Mingchu Li, Leiming Yan
2017 J jnl
IEEE Access
Kai Cui, Kuanjiu Zhou, Houbing Song, Mingchu Li
2017 conf
ES
Linhui Sun, Yi-Meng Zhang, Kai Cui, Ying Lv, Rong-Jie Peng, Xiao-Fang Yuan, Kuang Wu
2017 J jnl
Neurocomputing
Kai Cui, Jie Wang, Houbing Song, Chi Lin, Kuanjiu Zhou, Mingchu Li
2017 conf
CISP-BMEI
Yao Zhang, Hua Cai, Kai Cui, Ya'nan Chu, Mei Liu
2017 J jnl
计算机科学
Haoran Liang, Kuanjiu Zhou, Kai Cui, Jie Pan, Gang Hou
2016 conf
CISP-BMEI
Xinchao Gu, Hua Cai, Kai Cui, Ningbo Huang, Yong Yang
2015 J jnl
Neurocomputing
Kai Cui, Quanxue Gao, Hailin Zhang, Xinbo Gao, De-Yan Xie
2015 J jnl
J. Comput. Appl. Math.
Kai Cui, Na Lei
2014 J jnl
J. Multim.
Kai Cui
2014 conf
BIBM
Yanqin Bian, Kai Cui, Lingru Wang, Guang Zheng, Hongtao Guo, Jing Yang, Miao Jiang, Aiping Lu
2014 J jnl
J. Softw.
Guang Zheng, Kai Cui, Junping Zhan, Zekun Ning, Miao Jiang, Cheng Lu, Aiping Lu
2014 conf
BIBM
Guang Zheng, Ting Hao, Rong Li, Lingru Wang, Kai Cui, Cheng Lu, Aiping Lu
2014 J jnl
Neural Networks
Quanxue Gao, Jingjing Liu, Kai Cui, Hailin Zhang, Xiaogang Wang
2013 conf
FSKD
Guang Zheng, Zekun Ning, Junping Zhan, Kai Cui, Miao Jiang, Cheng Lu, Aiping Lu
2013 conf
GreenCom/iThings/CPScom
Jie Wang, Kuanjiu Zhou, Kai Cui, Xiangjie Kong, Guang Yang
2013 J jnl
Ann. Oper. Res.
Linhui Sun, Kai Cui, Ju-Hong Chen, Jun Wang, Xian-Chen He
2013 J jnl
Ann. Oper. Res.
Linhui Sun, Kai Cui, Ju-Hong Chen, Jun Wang, Xian-Chen He
2010 J jnl
Eur. J. Oper. Res.
Linhui Sun, Linyan Sun, Kai Cui, Ji-Bo Wang
2010 J jnl
Photonic Netw. Commun.
Kai Cui, Mark S. Leeson, Evor L. Hines
2010 C conf
APWeb
Kai Cui, Peiquan Jin, Lihua Yue
2009 conf
IFITA (3)
Shuhua Wang, Huaishan Liu, Kai Cui
2009 J jnl
IEEE Trans. Consumer Electron.
Zhi Li, Peiquan Jin, Xuan Su, Kai Cui, Lihua Yue
2009 J jnl
Eur. Trans. Telecommun.
Kai Cui, Mark S. Leeson, Evor L. Hines
2009 J jnl
IET Commun.
Kai Cui, Mark S. Leeson, Evor L. Hines
tests/unit/test_apk_cfg_features.py
← Index tests/unit/test_apk_cfg_features.py python
"""
Unit tests for APK CFG feature parity with the Binary Ninja pipeline.

Tests advanced CFG features computed from smali (topology hash, MD-index,
WL-MinHash, prime product, packed adjacency, block features export) and
the slimmed similarity table.

All tests use mocked smali input — no JADX/apktool/Java required.
"""
import pytest

from redb.extractors.decompiler.apk.smali_cfg import (
    SmaliCFGMetrics,
    compute_cfg_metrics,
)
from redb.extractors.decompiler.apk.method_extractor import (
    SMALI_OP_PRIMES,
    compute_prime_product_smali,
    count_call_instructions,
)

pytestmark = [pytest.mark.unit, pytest.mark.apk, pytest.mark.decompile]


# ===================================================================
# Sample smali bodies for testing
# ===================================================================

# Simple linear method: 3 instructions, 1 block
SMALI_LINEAR = """\
    const/4 v0, 0x0
    invoke-virtual {p0, v0}, Lcom/Foo;->bar(I)V
    return-void
"""

# Diamond CFG: if-else with two paths merging
SMALI_DIAMOND = """\
    const/4 v0, 0x1
    if-eqz v0, :cond_0
    invoke-virtual {p0}, Lcom/Foo;->pathA()V
    goto :goto_0
    :cond_0
    invoke-virtual {p0}, Lcom/Foo;->pathB()V
    :goto_0
    return-void
"""

# Loop: a back edge from goto to a label before it
SMALI_LOOP = """\
    const/4 v0, 0x0
    :loop_start
    add-int/lit8 v0, v0, 0x1
    if-lt v0, v1, :loop_start
    return-void
"""

# Multi-block with several invoke calls
SMALI_MULTI_CALL = """\
    invoke-virtual {p0}, Lcom/Foo;->a()V
    invoke-static {v0}, Lcom/Bar;->b(I)V
    invoke-direct {p0, v1}, Lcom/Baz;-><init>(I)V
    const/4 v0, 0x0
    return-void
"""


# ===================================================================
# TestSmaliCFGMetricsAdvanced — new fields in SmaliCFGMetrics
# ===================================================================

class TestSmaliCFGMetricsAdvanced:
    """Test that advanced CFG fields are populated by compute_cfg_metrics."""

    def test_topology_hash_is_bytes(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert isinstance(m.cfg_topology_hash, bytes)
        assert len(m.cfg_topology_hash) == 16

    def test_topology_hash_nonzero_for_multiblock(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert m.cfg_topology_hash != b'\x00' * 16

    def test_topology_hash_zero_for_empty(self):
        m = compute_cfg_metrics("")
        assert m.cfg_topology_hash == b'\x00' * 16

    def test_identical_cfg_same_topology_hash(self):
        """Two smali methods with the same CFG structure produce the same hash."""
        smali_a = """\
    const/4 v0, 0x1
    if-eqz v0, :cond_0
    const/4 v1, 0x2
    goto :goto_0
    :cond_0
    const/4 v1, 0x3
    :goto_0
    return-void
"""
        smali_b = """\
    const/4 v5, 0x9
    if-nez v5, :cond_0
    add-int v6, v5, v5
    goto :goto_0
    :cond_0
    sub-int v6, v5, v5
    :goto_0
    return-void
"""
        m_a = compute_cfg_metrics(smali_a)
        m_b = compute_cfg_metrics(smali_b)
        assert m_a.cfg_topology_hash == m_b.cfg_topology_hash

    def test_different_cfg_different_topology_hash(self):
        m_linear = compute_cfg_metrics(SMALI_LINEAR)
        m_diamond = compute_cfg_metrics(SMALI_DIAMOND)
        assert m_linear.cfg_topology_hash != m_diamond.cfg_topology_hash

    def test_md_index_topdown_nonzero(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert m.md_index_topdown != 0

    def test_md_index_bottomup_nonzero(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert m.md_index_bottomup != 0

    def test_md_index_zero_for_empty(self):
        m = compute_cfg_metrics("")
        assert m.md_index_topdown == 0
        assert m.md_index_bottomup == 0

    def test_wl_minhash_length(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert len(m.wl_minhash) == 128

    def test_wl_minhash_sentinel_for_empty(self):
        m = compute_cfg_metrics("")
        assert m.wl_minhash == [255] * 128

    def test_wl_minhash_values_are_uint8(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        for val in m.wl_minhash:
            assert 0 <= val <= 255

    def test_cfg_adjacency_nonempty_for_multiblock(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert len(m.cfg_adjacency) > 0

    def test_cfg_adjacency_empty_for_empty(self):
        m = compute_cfg_metrics("")
        assert m.cfg_adjacency == []

    def test_cfg_adjacency_packed_format(self):
        """Each entry should be (src << 16) | tgt."""
        m = compute_cfg_metrics(SMALI_DIAMOND)
        for edge in m.cfg_adjacency:
            assert isinstance(edge, int)
            src = edge >> 16
            tgt = edge & 0xFFFF
            assert src < m.block_count
            assert tgt < m.block_count

    def test_block_features_exported(self):
        m = compute_cfg_metrics(SMALI_DIAMOND)
        assert len(m.block_features) == m.block_count
        for bf in m.block_features:
            assert len(bf) == 8  # 7 categories + successor_count

    def test_cfg_feature_tlsh_none_for_small(self):
        """Small methods produce None (< 50 bytes of feature data)."""
        m = compute_cfg_metrics(SMALI_LINEAR)
        # Single-block linear method — too small for TLSH
        assert m.cfg_feature_tlsh is None

    def test_loop_count_with_back_edge(self):
        m = compute_cfg_metrics(SMALI_LOOP)
        assert m.loop_count >= 1


# ===================================================================
# TestPrimeProductSmali
# ===================================================================

class TestPrimeProductSmali:

    def test_empty_returns_zero(self):
        assert compute_prime_product_smali("") == 0

    def test_none_returns_zero(self):
        assert compute_prime_product_smali(None) == 0

    def test_known_computation(self):
        """Single invoke instruction → CALL category → prime 17."""
        smali = "    invoke-virtual {p0}, Lcom/Foo;->bar()V"
        assert compute_prime_product_smali(smali) == 17

    def test_two_instructions(self):
        """const (CONST→2) * invoke (CALL→17) = 34."""
        smali = """\
    const/4 v0, 0x0
    invoke-virtual {p0, v0}, Lcom/Foo;->bar(I)V
"""
        assert compute_prime_product_smali(smali) == 2 * 17

    def test_skips_directives_and_labels(self):
        """Directives, labels, and comments should be skipped."""
        smali = """\
.registers 2
.line 10
    :label
    # comment
    const/4 v0, 0x0
"""
        # Only const/4 → CONST → prime 2
        assert compute_prime_product_smali(smali) == 2

    def test_position_independent(self):
        """Reordering instructions produces the same product (multiplication is commutative)."""
        smali_a = """\
    add-int v0, v1, v2
    invoke-virtual {p0}, Lcom/Foo;->bar()V
"""
        smali_b = """\
    invoke-virtual {p0}, Lcom/Foo;->bar()V
    add-int v0, v1, v2
"""
        assert compute_prime_product_smali(smali_a) == compute_prime_product_smali(smali_b)

    def test_all_categories_have_primes(self):
        """Every category in SMALI_OP_PRIMES is a positive integer."""
        for cat, prime in SMALI_OP_PRIMES.items():
            assert isinstance(prime, int)
            assert prime >= 1

    def test_mod_2_64(self):
        """Result should be mod 2^64 (doesn't overflow)."""
        # A very long method — product stays within uint64
        smali = "\n".join(["    mul-int v0, v1, v2"] * 1000)
        result = compute_prime_product_smali(smali)
        assert 0 <= result < 2**64


# ===================================================================
# TestCallCount
# ===================================================================

class TestCallCount:

    def test_empty(self):
        assert count_call_instructions("") == 0

    def test_none(self):
        assert count_call_instructions(None) == 0

    def test_single_invoke(self):
        smali = "    invoke-virtual {p0}, Lcom/Foo;->bar()V"
        assert count_call_instructions(smali) == 1

    def test_multiple_invoke_types(self):
        assert count_call_instructions(SMALI_MULTI_CALL) == 3

    def test_non_invoke_not_counted(self):
        smali = """\
    const/4 v0, 0x0
    add-int v1, v0, v0
    return-void
"""
        assert count_call_instructions(smali) == 0


# ===================================================================
# TestSimilarityTableSlimmed
# ===================================================================

class TestSimilarityTableSlimmed:
    """Verify the similarity table no longer contains moved fields."""

    def test_export_similarity_no_block_count(self):
        """block_count should not be in similarity export columns."""
        from redb.extractors.decompiler.DecompileAPK import DecompileAPK
        from unittest.mock import MagicMock

        extractor = DecompileAPK.__new__(DecompileAPK)
        extractor.log = MagicMock()
        extractor.sha256 = "a" * 64
        extractor.sha1 = "b" * 40
        extractor.md5 = "c" * 32
        extractor.analysis_results = {
            "sha256": "a" * 64,
            "sha1": "b" * 40,
            "md5": "c" * 32,
            "similarity_metrics": [{
                "smali_method_hash": "d" * 64,
                "cyclomatic_complexity": 3,
                "ssdeep_smali": None,
                "tlsh_smali": None,
                "minhash": [1, 2, 3],
            }],
        }

        export = extractor.prepare_export_data("ClickHouseExporter")
        sim_cols = export["method_similarity_metrics"]["column_names"]
        assert "block_count" not in sim_cols
        assert "edge_count" not in sim_cols
        assert "loop_count" not in sim_cols
        assert "max_depth" not in sim_cols
        assert "max_fan_out" not in sim_cols
        # These should still be there
        assert "smali_method_hash" in sim_cols
        assert "ssdeep_smali" in sim_cols
        assert "minhash" in sim_cols
        # cyclomatic_complexity moved to cfg table
        assert "cyclomatic_complexity" not in sim_cols


# ===================================================================
# TestCFGTableExport
# ===================================================================

class TestCFGTableExport:
    """Verify the new CFG table is exported correctly."""

    def test_export_cfg_table_present(self):
        from redb.extractors.decompiler.DecompileAPK import DecompileAPK
        from unittest.mock import MagicMock

        extractor = DecompileAPK.__new__(DecompileAPK)
        extractor.log = MagicMock()
        extractor.analysis_results = {
            "sha256": "a" * 64,
            "sha1": "b" * 40,
            "md5": "c" * 32,
            "cfg": [{
                "smali_method_hash": "d" * 64,
                "cfg_topology_hash": b'\x01' * 16,
                "block_count": 4,
                "edge_count": 5,
                "instructions_count": 20,
                "call_count": 3,
                "cyclomatic_complexity": 3,
                "loop_count": 1,
                "max_depth": 2,
                "max_fan_out": 2,
                "md_index_topdown": 12345,
                "md_index_bottomup": 67890,
                "prime_product_smali": 999,
                "cfg_feature_tlsh": None,
                "wl_minhash": [0] * 128,
                "bb_features": [[10, 1, 0, 2, 1, 0, 0, 2]] * 4,
                "cfg_adjacency": [0x00010000, 0x00010002],
            }],
        }

        export = extractor.prepare_export_data("ClickHouseExporter")
        assert "cfg_methods" in export
        cfg_export = export["cfg_methods"]
        assert cfg_export["table"] == "code_apk_cfg_methods"
        assert len(cfg_export["data"]) == 1
        assert "cfg_topology_hash" in cfg_export["column_names"]
        assert "prime_product_smali" in cfg_export["column_names"]
        assert "wl_minhash" in cfg_export["column_names"]
        assert "bb_features" in cfg_export["column_names"]
        assert "cfg_adjacency" in cfg_export["column_names"]
        # Verify column count matches data width
        assert len(cfg_export["column_names"]) == len(cfg_export["data"][0])
        assert len(cfg_export["column_type_names"]) == len(cfg_export["data"][0])