Rafael Grimson

18 papers C 4Journal 12Unranked 1
YearRankTypeTitle / Venue / Authors
2020 J jnl
Earth Sci. Informatics
Juan Lucas Bali, Manuela Cerdeiro, Mariela Rajngewerc, Rafael Grimson
2019 J jnl
IEEE Trans. Geosci. Remote. Sens.
Rafael Grimson, Juan Lucas Bali, Mariela Rajngewerc, Laura San Martin, Mercedes Salvia
2015 C conf
IGARSS
Rafael Grimson, Natalia S. Morandeira, Alejandro C. Frery
2014 J jnl
J. Comput. Syst. Sci.
Santiago Figueira, Daniel Gorín, Rafael Grimson
2014 J jnl
Reports Math. Log.
Rafael Grimson, Bart Kuijpers
2012 J jnl
Appl. Algebra Eng. Commun. Comput.
Rafael Grimson, Joos Heintz, Bart Kuijpers
2012 J jnl
Math. Log. Q.
Rafael Grimson, Bart Kuijpers, Walied Othman
2011 J jnl
Int. J. Geogr. Inf. Sci.
Bart Kuijpers, Rafael Grimson, Walied Othman
2011 J jnl
Inf. Process. Lett.
Rafael Grimson, Joos Heintz, Bart Kuijpers
2011 J jnl
CoRR
Rafael Grimson, Joos Heintz, Bart Kuijpers
2011 C conf
WoLLIC
Santiago Figueira, Daniel Gorín, Rafael Grimson
2010 C conf
GMP
Rafael Grimson
2010 J jnl
J. Comput. Syst. Sci.
Santiago Figueira, Daniel Gorín, Rafael Grimson
2010
Rafael Grimson
2009 J jnl
J. Complex.
Rafael Grimson, Bart Kuijpers
2008 C conf
WoLLIC
Santiago Figueira, Daniel Gorín, Rafael Grimson
2007 J jnl
CoRR
Bart Kuijpers, Walied Othman, Rafael Grimson
2007 conf
Constraint Databases, Geometric Elimination and Geographic Information Systems
Rafael Grimson
redb/extractors/js_extractors/js_content.py
← Index redb/extractors/js_extractors/js_content.py python
"""Persists raw + normalised text into the generic `code_text_content` table.

Reads the raw source and the deobfuscation result directly from the shared
JSContext so no extra compute happens here — both values are computed once
per sample (the source at JSContext construction, the deobfuscation lazily
on first access) and reused by any extractor that needs them.

`text_normalized` is left NULL when the deobfuscation pass produced no
output, so analysts can distinguish "we tried and got nothing" from
"normalisation succeeded".
"""

import inspect
from datetime import datetime, timezone
from typing import Any

from redb.extractors.enum import Tag
from redb.extractors.js_extractor import JSExtractor


class JSContentExtractor(JSExtractor):

    def __init__(
        self, filepath, log, exporters=None, index_prefix=None,
        known_benign=False, known_malicious=False, source=None, context=None,
    ):
        super().__init__(
            filepath, log, exporters, index_prefix,
            known_benign, known_malicious, source, context=context,
        )
        self.content_row = None
        self.log.debug(inspect.currentframe().f_code.co_name)

    def tag(self):
        return Tag.JS_CONTENT.value

    def extract(self):
        src = self.js_source
        if not src:
            return None

        deobfuscated, normalizer_used = self._context.deobfuscated

        self.content_row = {
            "content_type": self._context.content_type,
            "text_raw": src,
            "text_normalized": deobfuscated,  # may be None
            "normalizer_used": normalizer_used,  # may be None
        }
        return self.content_row

    def prepare_export_data(self, exporter_type: str) -> Any:
        if exporter_type != "ClickHouseExporter":
            return None
        if not self.content_row:
            return None

        r = self.content_row
        data = [[
            self.sha256,
            r["content_type"],
            r["text_raw"],
            r["text_normalized"],
            r["normalizer_used"],
            datetime.now(timezone.utc),
        ]]

        column_names = [
            "sha256",
            "content_type",
            "text_raw",
            "text_normalized",
            "normalizer_used",
            "analysis_date",
        ]

        column_type_names = [
            "FixedString(64)",
            "LowCardinality(String)",
            "String",
            "Nullable(String)",
            "Nullable(String)",
            "DateTime64(3, 'UTC')",
        ]

        return (data, column_names, column_type_names)

    def get_clickhouse_table(self) -> str:
        return "code_text_content"