Oliver Otto

17 papers B 1C 2Journal 6Unranked 7
YearRankTypeTitle / Venue / Authors
2021 conf
MIWAI
Stefanie Krause, Oliver Otto, Frieder Stolzenburg
2021 J jnl
CoRR
Stefanie Krause, Oliver Otto, Frieder Stolzenburg
2019 conf
Open Identity Summit
Hermann Strack, Oliver Otto, Sebastian Klinner, André Schmidt
2015 conf
EMBC
Oliver Otto, Philipp Rosendahl, Stefan Golfier, Alexander Mietke, Maik Herbig, Angela Jacobi, Nicole Töpfner, Christoph Herold, Daniel Klaue, Salvatore Girardo, Maria Winzi, Elisabeth Fischer-Friedrich, Jochen R. Guck
2007 J jnl
Int. J. Comput. Appl. Technol.
Robin Wolff, David J. Roberts, Anthony Steed, Oliver Otto
2006 conf
VRCIA
Oliver Otto, Dave Roberts, Robin Wolff
2006 J jnl
Virtual Real.
David J. Roberts, Ilona Heldal, Oliver Otto, Robin Wolff
2006
Oliver Otto
2005 conf
IPT/EGVE
Dave Roberts, Majda Al-Liabi, Robin Wolff, Oliver Otto, Ali Al-khalifah
2005 J jnl
Comput. Artif. Intell.
David J. Roberts, Robin Wolff, Oliver Otto
2004 conf
PDCS
Marcel Seelig, William S. Harwin, David J. Roberts, Oliver Otto, Robin Wolff
2004 J jnl
Presence Teleoperators Virtual Environ.
Robin Wolff, David J. Roberts, Oliver Otto
2004 C conf
DS-RT
Robin Wolff, David J. Roberts, Oliver Otto
2004 conf
PDCS
David J. Roberts, Oliver Otto, Robin Wolff
2004 B conf
VRST
David J. Roberts, Robin Wolff, Oliver Otto, Dieter Kranzlmüller, Christoph Anthes, Anthony Steed
2003 J jnl
Presence Teleoperators Virtual Environ.
David J. Roberts, Robin Wolff, Oliver Otto, Anthony Steed
2003 C conf
DS-RT
Oliver Otto, David J. Roberts
redb/extractors/js_extractors/js_content.py
← Index redb/extractors/js_extractors/js_content.py python
"""Persists raw + normalised text into the generic `code_text_content` table.

Reads the raw source and the deobfuscation result directly from the shared
JSContext so no extra compute happens here — both values are computed once
per sample (the source at JSContext construction, the deobfuscation lazily
on first access) and reused by any extractor that needs them.

`text_normalized` is left NULL when the deobfuscation pass produced no
output, so analysts can distinguish "we tried and got nothing" from
"normalisation succeeded".
"""

import inspect
from datetime import datetime, timezone
from typing import Any

from redb.extractors.enum import Tag
from redb.extractors.js_extractor import JSExtractor


class JSContentExtractor(JSExtractor):

    def __init__(
        self, filepath, log, exporters=None, index_prefix=None,
        known_benign=False, known_malicious=False, source=None, context=None,
    ):
        super().__init__(
            filepath, log, exporters, index_prefix,
            known_benign, known_malicious, source, context=context,
        )
        self.content_row = None
        self.log.debug(inspect.currentframe().f_code.co_name)

    def tag(self):
        return Tag.JS_CONTENT.value

    def extract(self):
        src = self.js_source
        if not src:
            return None

        deobfuscated, normalizer_used = self._context.deobfuscated

        self.content_row = {
            "content_type": self._context.content_type,
            "text_raw": src,
            "text_normalized": deobfuscated,  # may be None
            "normalizer_used": normalizer_used,  # may be None
        }
        return self.content_row

    def prepare_export_data(self, exporter_type: str) -> Any:
        if exporter_type != "ClickHouseExporter":
            return None
        if not self.content_row:
            return None

        r = self.content_row
        data = [[
            self.sha256,
            r["content_type"],
            r["text_raw"],
            r["text_normalized"],
            r["normalizer_used"],
            datetime.now(timezone.utc),
        ]]

        column_names = [
            "sha256",
            "content_type",
            "text_raw",
            "text_normalized",
            "normalizer_used",
            "analysis_date",
        ]

        column_type_names = [
            "FixedString(64)",
            "LowCardinality(String)",
            "String",
            "Nullable(String)",
            "Nullable(String)",
            "DateTime64(3, 'UTC')",
        ]

        return (data, column_names, column_type_names)

    def get_clickhouse_table(self) -> str:
        return "code_text_content"