Vedat Coskun

18 papers Journal 12Unranked 5
YearRankTypeTitle / Venue / Authors
2016 J jnl
Mob. Inf. Syst.
Busra Ozdenizci, Kerem Ok, Vedat Coskun
2016 J jnl
Wirel. Pers. Commun.
Kerem Ok, Vedat Coskun, Binboga Siddik Yarman, Cem Cevikbas, Busra Ozdenizci
2015 J jnl
Sensors
Busra Ozdenizci, Vedat Coskun, Kerem Ok
2015 J jnl
Sensors
Vedat Coskun, Busra Ozdenizci, Kerem Ok
2013 J jnl
Wirel. Pers. Commun.
Kerem Ok, Vedat Coskun, Busra Ozdenizci, Mehmet N. Aydin
2013 J jnl
Wirel. Pers. Commun.
Vedat Coskun, Busra Ozdenizci, Kerem Ok
2013 J jnl
Wirel. Pers. Commun.
Busra Ozdenizci, Kerem Ok, Vedat Coskun
2010 conf
ICITST
Busra Ozdenizci, Mehmet N. Aydin, Vedat Coskun, Kerem Ok
2010 conf
ICITST
Busra Ozdenizci, Vedat Coskun, Mehmet N. Aydin, Kerem Ok
2006 J jnl
IEEE Trans. Mob. Comput.
Vedat Coskun, Erdal Cayirci, Albert Levi, Serdar Sancak
2006 J jnl
Comput. Networks
Erdal Cayirci, Vedat Coskun, Caghan Cimen
2006 J jnl
Wirel. Pers. Commun.
Ayhan Erdogan, Vedat Coskun, Adnan Kavak
2006 J jnl
Ad Hoc Networks
Erdal Cayirci, Hakan Tezcan, Yasar Dogan, Vedat Coskun
2005 conf
NODALIDA
Ergin Altintas, M. Elif Karsligil, Vedat Coskun
2005 conf
ISCIS
Ergin Altintas, M. Elif Karsligil, Vedat Coskun
2004 J jnl
Int. J. Softw. Tools Technol. Transf.
Luqi, Zhiwei Guan, Valdis Berzins, Lynn Zhang, David L. Floodeen, Vedat Coskun, Joseph Puett, Michael Brown
2004 conf
ICC
Serdar Sancak, Erdal Cayirci, Vedat Coskun, Albert Levi
1998
Vedat Coskun
redb/extractors/js_extractors/js_content.py
← Index redb/extractors/js_extractors/js_content.py python
"""Persists raw + normalised text into the generic `code_text_content` table.

Reads the raw source and the deobfuscation result directly from the shared
JSContext so no extra compute happens here — both values are computed once
per sample (the source at JSContext construction, the deobfuscation lazily
on first access) and reused by any extractor that needs them.

`text_normalized` is left NULL when the deobfuscation pass produced no
output, so analysts can distinguish "we tried and got nothing" from
"normalisation succeeded".
"""

import inspect
from datetime import datetime, timezone
from typing import Any

from redb.extractors.enum import Tag
from redb.extractors.js_extractor import JSExtractor


class JSContentExtractor(JSExtractor):

    def __init__(
        self, filepath, log, exporters=None, index_prefix=None,
        known_benign=False, known_malicious=False, source=None, context=None,
    ):
        super().__init__(
            filepath, log, exporters, index_prefix,
            known_benign, known_malicious, source, context=context,
        )
        self.content_row = None
        self.log.debug(inspect.currentframe().f_code.co_name)

    def tag(self):
        return Tag.JS_CONTENT.value

    def extract(self):
        src = self.js_source
        if not src:
            return None

        deobfuscated, normalizer_used = self._context.deobfuscated

        self.content_row = {
            "content_type": self._context.content_type,
            "text_raw": src,
            "text_normalized": deobfuscated,  # may be None
            "normalizer_used": normalizer_used,  # may be None
        }
        return self.content_row

    def prepare_export_data(self, exporter_type: str) -> Any:
        if exporter_type != "ClickHouseExporter":
            return None
        if not self.content_row:
            return None

        r = self.content_row
        data = [[
            self.sha256,
            r["content_type"],
            r["text_raw"],
            r["text_normalized"],
            r["normalizer_used"],
            datetime.now(timezone.utc),
        ]]

        column_names = [
            "sha256",
            "content_type",
            "text_raw",
            "text_normalized",
            "normalizer_used",
            "analysis_date",
        ]

        column_type_names = [
            "FixedString(64)",
            "LowCardinality(String)",
            "String",
            "Nullable(String)",
            "Nullable(String)",
            "DateTime64(3, 'UTC')",
        ]

        return (data, column_names, column_type_names)

    def get_clickhouse_table(self) -> str:
        return "code_text_content"