Karine Nahon

22 papers Journal 1Unranked 20
YearRankTypeTitle / Venue / Authors
2020 conf
HICSS
John Bertot, Paul T. Jaeger, Karine Nahon
2019 conf
HICSS
Karine Nahon, Daniel D. Suthers
2018 conf
HICSS
Daniel D. Suthers, Karine Nahon
2017 conf
International KEYSTONE Conference
Chaya Liebeskind, Karine Nahon
2017 J jnl
POLIBITS
Chaya Liebeskind, Karine Nahon, Yaakov HaCohen-Kerner, Yotam Manor
2017 conf
HICSS
Karine Nahon, Caroline Haythornthwaite
2016 conf
HICSS
Karine Nahon, Caroline Haythornthwaite
2016 conf
HICSS
Karine Nahon, Kevin Crowston
2015 conf
HICSS
Karine Nahon, Alon Peled
2015 conf
HICSS
Anatoliy A. Gruzd, Caroline Haythornthwaite, Karine Nahon
2015 conf
HICSS
Kevin Crowston, Karine Nahon
2014 conf
HICSS
Kevin Crowston, Karine Nahon
2014 conf
HICSS
Caroline Haythornthwaite, Karine Nahon, Anatoliy A. Gruzd
2013 conf
HICSS
Scott P. Robertson, John Carlo Bertot, Karine Nahon
2013 conf
HICSS
Caroline Haythornthwaite, Karine Nahon
2012 conf
HICSS
Jonathan T. Morgan, Robert M. Mason, Karine Nahon
2012 conf
HICSS
Karine Nahon, Izak Benbasat, Camille Grange
2012 conf
HICSS
Hafedh Chourabi, Taewoo Nam, Shawn T. Walker, J. Ramón Gil-García, Sehl Mellouli, Karine Nahon, Theresa A. Pardo, Hans Jochen Scholl
2011 conf
iConference
Karine Nahon, Jeff J. Hemsley, Shawn T. Walker, Muzammil Hussain
2011 conf
HICSS
Karine Nahon, Jeff J. Hemsley
2011 conf
iConference
Jonathan T. Morgan, Robert M. Mason, Karine Nahon
2011 ed.
DG.O
John Carlo Bertot, Karine Nahon, Soon Ae Chun, Luis F. Luna-Reyes, Vijay Atluri
tests/unit/test_decompile_strings.py
← Index tests/unit/test_decompile_strings.py python
"""Unit tests for bninja/analysis/strings.py — StringAnalysis."""
import pytest
import math
from unittest.mock import MagicMock


# StringAnalysis has no binaryninja imports, just collections and math
from redb.extractors.decompiler.bninja.analysis.strings import StringAnalysis


# ============================================================================
# Helper mocks
# ============================================================================

class MockStringEntry:
    """Mock for a Binary Ninja string reference."""
    def __init__(self, value, raw=None, start=0, length=0, type_name="Utf8String"):
        self.value = value
        self.raw = raw if raw is not None else (value.encode("utf-8") if isinstance(value, str) else value)
        self.start = start
        self.length = length if length else len(self.raw)
        self.type = MagicMock()
        self.type.name = type_name


class MockBinaryView:
    """Mock binary view with a strings list."""
    def __init__(self, strings=None):
        self.strings = strings or []


# ============================================================================
# 6a. StringAnalysis
# ============================================================================


class TestStringAnalysisEntropy:
    def setup_method(self):
        self.sa = StringAnalysis(bv=MockBinaryView(), functions=[])

    def test_entropy_empty_string(self):
        assert self.sa.entropy("") == 0.0

    def test_entropy_single_char(self):
        assert self.sa.entropy("aaaa") == 0.0

    def test_entropy_uniform_distribution(self):
        # "abcd" -> 4 unique chars, each p=1/4, entropy = log2(4) = 2.0
        result = self.sa.entropy("abcd")
        assert result == pytest.approx(2.0)

    def test_entropy_binary_string(self):
        # "ab" -> 2 unique chars, each p=1/2, entropy = log2(2) = 1.0
        result = self.sa.entropy("ab")
        assert result == pytest.approx(1.0)


class TestStringAnalysisAnalyze:
    def test_analyze_deduplication(self):
        """Duplicate (string, encoding) pairs -> only first kept."""
        entries = [
            MockStringEntry("hello", start=100, type_name="Utf8String"),
            MockStringEntry("hello", start=200, type_name="Utf8String"),
        ]
        bv = MockBinaryView(strings=entries)
        sa = StringAnalysis(bv=bv, functions=[])
        result = sa.analyze()
        assert len(result) == 1
        assert result[0]["string_offset"] == 100

    def test_analyze_sorted_by_address(self):
        """First occurrence (lowest offset) is the one kept."""
        entries = [
            MockStringEntry("world", start=500, type_name="Utf8String"),
            MockStringEntry("world", start=100, type_name="Utf8String"),
        ]
        bv = MockBinaryView(strings=entries)
        sa = StringAnalysis(bv=bv, functions=[])
        result = sa.analyze()
        assert len(result) == 1
        # The analyze() sorts by start, so 100 comes first
        assert result[0]["string_offset"] == 100

    def test_analyze_empty_bv(self):
        bv = MockBinaryView(strings=[])
        sa = StringAnalysis(bv=bv, functions=[])
        result = sa.analyze()
        assert result == []

    def test_analyze_output_schema(self):
        entries = [MockStringEntry("test_string", start=0, type_name="Utf8String")]
        bv = MockBinaryView(strings=entries)
        sa = StringAnalysis(bv=bv, functions=[])
        result = sa.analyze()
        assert len(result) == 1
        r = result[0]
        required_keys = [
            "string",
            "string_raw",
            "string_encoding",
            "string_offset",
            "string_length",
            "string_raw_length",
            "string_entropy",
        ]
        for key in required_keys:
            assert key in r, f"Missing key: {key}"