Mahdi Nazm Bojnordi

45 papers A* 8A 4B 2C 3Misc 2Journal 18Unranked 8
YearRankTypeTitle / Venue / Authors
2023 J jnl
IEEE Trans. Multim.
Hoda Roodaki, Mahdi Nazm Bojnordi
2023 J jnl
IEEE Trans. Computers
Ananth Krishna Prasad, Mahdi Nazm Bojnordi
2023 J jnl
CoRR
Sarabjeet Singh, Xiong Fan, Ananth Krishna Prasad, Lin Jia, Anirban Nag, Rajeev Balasubramonian, Mahdi Nazm Bojnordi, Elaine Shi
2023 J jnl
IEEE Micro
Sarabjeet Singh, Xiong Fan, Ananth Krishna Prasad, Lin Jia, Anirban Nag, Rajeev Balasubramonian, Mahdi Nazm Bojnordi, Elaine Shi
2022 J jnl
IEEE Trans. Computers
Payman Behnam, Mahdi Nazm Bojnordi
2021 J jnl
CoRR
Hoda Roodaki, Mahdi Nazm Bojnordi
2021 A* conf
ISCA
Geng Yuan, Payman Behnam, Zhengang Li, Ali Shafiee, Sheng Lin, Xiaolong Ma, Hang Liu, Xuehai Qian, Mahdi Nazm Bojnordi, Yanzhi Wang, Caiwen Ding
2021 J jnl
CoRR
Geng Yuan, Payman Behnam, Zhengang Li, Ali Shafiee, Sheng Lin, Xiaolong Ma, Hang Liu, Xuehai Qian, Mahdi Nazm Bojnordi, Yanzhi Wang, Caiwen Ding
2021 Misc conf
ICASSP
Hoda Roodaki, Masoud Dehyadegari, Mahdi Nazm Bojnordi
2021 A* conf
HPCA
Ananth Krishna Prasad, Morteza Rezaalipour, Masoud Dehyadegari, Mahdi Nazm Bojnordi
2021 J jnl
CoRR
Ananth Krishna Prasad, Mahdi Nazm Bojnordi
2021 A conf
DATE
Geng Yuan, Payman Behnam, Yuxuan Cai, Ali Shafiee, Jingyan Fu, Zhiheng Liao, Zhengang Li, Xiaolong Ma, Jieren Deng, Jinhui Wang, Mahdi Nazm Bojnordi, Yanzhi Wang, Caiwen Ding
2020 J jnl
IEEE Trans. Computers
Morteza Rezaalipour, Mohammad Rezaalipour, Masoud Dehyadegari, Mahdi Nazm Bojnordi
2020 A* conf
DAC
Payman Behnam, Mahdi Nazm Bojnordi
2020 J jnl
IEEE Trans. Computers
Payman Behnam, Mahdi Nazm Bojnordi
2019 J jnl
IEEE Trans. Computers
Shibo Wang, Mahdi Nazm Bojnordi, Xiaochen Guo, Engin Ipek
2019 A* conf
DAC
Mahdi Nazm Bojnordi, Farhan Nasrullah
2019 A* conf
DAC
Payman Behnam, Mahdi Nazm Bojnordi
2018 J jnl
IEEE Trans. Very Large Scale Integr. Syst.
Yomi Karthik Rupesh, Payman Behnam, Goverdhan Reddy Pandla, Manikanth Miryala, Mahdi Nazm Bojnordi
2018 A conf
ISLPED
Sarvenaz Tajasob, Morteza Rezaalipour, Masoud Dehyadegari, Mahdi Nazm Bojnordi
2018 C conf
ICCD
Payman Behnam, Arjun Pal Chowdhury, Mahdi Nazm Bojnordi
2018 J jnl
IEEE Trans. Computers
Xiaochen Guo, Mahdi Nazm Bojnordi, Qing Guo, Engin Ipek
2018 J jnl
CoRR
Hamid Reza Mahdiani, Mahdi Nazm Bojnordi, Sied Mehdi Fakhraie
2017 conf
E2SC@SC
Payman Behnam, Naser Sedaghati, Mahdi Nazm Bojnordi
2017 B conf
PACT
Yomi Karthik Rupesh, Mahdi Nazm Bojnordi
2017 J jnl
IEEE Micro
Mahdi Nazm Bojnordi, Engin Ipek
2016 J jnl
IEEE Trans. Very Large Scale Integr. Syst.
Yuxin Bai, Yanwei Song, Mahdi Nazm Bojnordi, Alexander E. Shapiro, Eby G. Friedman, Engin Ipek
2016 A* conf
HPCA
Mahdi Nazm Bojnordi, Engin Ipek
2015 C conf
ICCD
Yuxin Bai, Yanwei Song, Mahdi Nazm Bojnordi, Alexander E. Shapiro, Engin Ipek, Eby G. Friedman
2015 A conf
ISLPED
Shibo Wang, Yanwei Song, Mahdi Nazm Bojnordi, Engin Ipek
2015 C conf
ICCD
Yanwei Song, Mahdi Nazm Bojnordi, Engin Ipek
2013 J jnl
ACM Trans. Comput. Syst.
Mahdi Nazm Bojnordi, Engin Ipek
2013 A* conf
MICRO
Mahdi Nazm Bojnordi, Engin Ipek
2013 J jnl
IEEE Micro
Mahdi Nazm Bojnordi, Engin Ipek
2012 A* conf
ISCA
Mahdi Nazm Bojnordi, Engin Ipek
2008 Misc conf
CSICC
Naser Sedaghati-Mokhtari, Mahdi Nazm Bojnordi, Abbas Hormati, Sied Mehdi Fakhraie
2007 B conf
MASCOTS
Naser Sedaghati-Mokhtari, Mahdi Nazm Bojnordi, Sied Mehdi Fakhraie
2007 conf
ICECS
Naser Sedaghati-Mokhtari, Mahdi Nazm Bojnordi, Amin Farmahini Farahani, Mahmoud Mousavinezhad, Sied Mehdi Fakhraie
2006 conf
CCECE
Mahdi Nazm Bojnordi, Mahmoud Reza Hashemi, Omid Fatemi
2006 A conf
DATE
Mohammad Hosseinabady, Abbas Banaiyan, Mahdi Nazm Bojnordi, Zainalabedin Navabi
2006 conf
APCCAS
Mahdi Nazm Bojnordi, Nariman Moezzi Madani, Mehdi Semsarzadeh, Ali Afzali-Kusha
2006 conf
ICASSP (2)
Mahdi Nazm Bojnordi, Omid Fatemi, Mahmoud Reza Hashemi
2006 conf
APCCAS
Mahdi Nazm Bojnordi, Naser Sedaghati-Mokhtari, Omid Fatemi, Mahmoud Reza Hashemi
2006 conf
APCCAS
Mahdi Nazm Bojnordi, Omid Fatemi, Mahmoud Reza Hashemi
2006 conf
APCCAS
Mahdi Nazm Bojnordi, Mehdi Semsarzadeh, Mahmoud Reza Hashemi, Omid Fatemi
redb/extractors/js_extractor.py
← Index redb/extractors/js_extractor.py python
import logging
import re
from abc import ABCMeta, abstractmethod

from redb.extractors.extractor import Extractor
from redb.extractors.js_extractors.js_context import JSContext, _text_entropy

logger = logging.getLogger(__name__)

# ESM is recognised by line-anchored `import ... from "..."` / bare side-effect
# `import "..."` / top-level `export ...`. Anchored at line start to avoid
# matching the substring inside string literals or comments.
_ESM_PATTERN = re.compile(
    r'(?m)^\s*(?:'
    r'import\s+[^;\n]*?\bfrom\s+[\'"]'
    r'|import\s+[\'"][^\'"]+[\'"]'
    r'|export\s+(?:default\b|\{|\*|const\b|let\b|var\b|function\b|class\b|async\b)'
    r')'
)


@abstractmethod
class JSExtractor(Extractor, metaclass=ABCMeta):
    """Base class for JavaScript file extractors.

    Every JSExtractor reads its raw materials (bytes / decoded source / line
    list / scan_source results / pyjsparser AST / text entropy) from a shared
    `JSContext`. When workers.py drives the JS pipeline it builds one context
    per sample and threads it into every extractor via `context=`. When tests
    or other callers instantiate an extractor directly, the constructor builds
    a fresh context from `(filepath, source=...)`.

    All historical instance attributes (`self.binary`, `self.js_source`,
    `self.lines`) and helpers (`self._decode_source`, `self._parse_ast`,
    `self._calculate_text_entropy`) are preserved as thin delegators so
    existing extractor code keeps working unchanged.
    """

    def __init__(
        self,
        filepath,
        log,
        exporters=None,
        index_prefix=None,
        known_benign=False,
        known_malicious=False,
        source=None,
        context=None,
    ):
        if context is None:
            context = JSContext.from_path(filepath, log=log, source=source)
        elif source is not None and context.source != source:
            log.warning(
                "JSExtractor received both `source=` and `context=` with "
                "differing source; ignoring source kwarg"
            )
        self._context = context

        super().__init__(
            filepath,
            log,
            exporters,
            index_prefix,
            known_benign=known_benign,
            known_malicious=known_malicious,
        )

    @property
    def binary(self):
        return self._context.raw_bytes

    @property
    def js_source(self):
        return self._context.source

    @property
    def lines(self):
        return self._context.lines

    def _decode_source(self):
        """Back-compat shim — the context already decoded once at construction.

        Kept so any external caller using the historical method name keeps
        working without touching the underlying bytes again.
        """
        return self._context.source

    def _parse_ast(self):
        """Return the shared pyjsparser AST (or None if unavailable)."""
        return self._context.ast

    def _calculate_text_entropy(self, text):
        """Shannon text entropy for `text`.

        When `text` is the context's own source we read the cached value;
        otherwise we compute fresh. JSStringsExtractor calls this on arbitrary
        decoded substrings, so the fresh-compute path must remain available.
        """
        if text is self._context.source:
            return self._context.text_entropy
        return _text_entropy(text)

    def _detect_environment(self):
        """Detect the target JS runtime environment."""
        src = self.js_source
        if not src:
            return "unknown"

        # WScript/WSH indicators
        wscript_patterns = [
            'WScript.', 'WSH.', 'ActiveXObject', 'Scripting.FileSystemObject',
            'WScript.Shell', 'ADODB.Stream',
        ]
        for p in wscript_patterns:
            if p in src:
                return "wscript"

        # Browser-extension APIs — checked before generic browser/worker because
        # `chrome.*` and `browser.runtime` are distinctive of MV2/MV3 extensions
        extension_patterns = [
            'chrome.runtime', 'chrome.tabs', 'chrome.storage',
            'chrome.webRequest', 'browser.runtime', 'browser.tabs',
        ]
        for p in extension_patterns:
            if p in src:
                return "browser_extension"

        # Service / Web Workers — worker-only APIs that don't appear in regular
        # browser pages (a generic browser script would use `window.` or
        # `document.`, never `self.importScripts` or `caches.match`)
        worker_patterns = [
            "self.addEventListener('fetch'", 'self.addEventListener("fetch"',
            'self.importScripts', 'self.skipWaiting',
            'caches.match', 'caches.open',
        ]
        for p in worker_patterns:
            if p in src:
                return "service_worker"

        # Deno runtime
        if 'Deno.' in src:
            return "deno"

        # Node.js indicators
        node_patterns = [
            'require(', 'module.exports', 'process.env', '__dirname',
            '__filename', 'Buffer.', 'child_process',
        ]
        for p in node_patterns:
            if p in src:
                return "node"

        # Browser indicators
        browser_patterns = [
            'document.', 'window.', 'navigator.', 'localStorage',
            'sessionStorage', 'XMLHttpRequest', 'addEventListener',
        ]
        for p in browser_patterns:
            if p in src:
                return "browser"

        return "unknown"

    def _detect_script_type(self):
        """Detect the script type/format."""
        src = self.js_source
        if not src:
            return "unknown"

        stripped = src.lstrip()

        # JScript.Encode payload — must be checked first since the encoded
        # body can't be classified any other way
        if stripped.startswith('#@~^'):
            return "jse"

        # WSF / HTA live in the first few KB of an HTML-ish wrapper
        head_lower = stripped[:4096].lower()

        # Windows Script File — XML wrapper around one or more <script> blocks
        if ('<job' in head_lower or '<package' in head_lower) and '<script' in head_lower:
            return "wsf"

        # HTML Application — distinct from generic embedded_html because HTAs
        # run under mshta.exe with full WSH/ActiveX access
        if '<hta:application' in head_lower or 'application/hta' in head_lower:
            return "hta"

        if stripped.startswith('<!') or stripped.startswith('<html') or '<script' in stripped[:2000]:
            return "embedded_html"

        if 'WScript.' in src or 'WSH.' in src:
            return "wscript"

        if _ESM_PATTERN.search(src):
            return "esm"

        if 'require(' in src or 'module.exports' in src:
            return "node_module"

        return "standalone"