Vincenzo Perri

16 papers A 1B 1Journal 10Unranked 4
YearRankTypeTitle / Venue / Authors
2025 J jnl
J. Comput. Soc. Sci.
Benjamín Garzón, Vincenzo Perri, Lisi Qarkaxhija, Ingo Scholtes, Martin J. Tomasik
2024 J jnl
CoRR
Jan von Pichowski, Vincenzo Perri, Lisi Qarkaxhija, Ingo Scholtes
2023 J jnl
CoRR
Luka V. Petrovic, Vincenzo Perri
2023 J jnl
EPJ Data Sci.
Vincenzo Perri, Luka V. Petrovic, Ingo Scholtes
2023 J jnl
CoRR
Christoph Gote, Vincenzo Perri, Christian Zingg, Giona Casiraghi, Carsten Arzig, Alexander von Gernler, Frank Schweitzer, Ingo Scholtes
2023 J jnl
Soc. Netw. Anal. Min.
Christoph Gote, Vincenzo Perri, Christian Zingg, Giona Casiraghi, Carsten Arzig, Alexander von Gernler, Frank Schweitzer, Ingo Scholtes
2022 conf
LoG
Lisi Qarkaxhija, Vincenzo Perri, Ingo Scholtes
2022 J jnl
CoRR
Lisi Qarkaxhija, Vincenzo Perri, Ingo Scholtes
2022 conf
CHR
Vincenzo Perri, Lisi Qarkaxhija, Albin Zehe, Andreas Hotho, Ingo Scholtes
2022 J jnl
CoRR
Vincenzo Perri, Lisi Qarkaxhija, Albin Zehe, Andreas Hotho, Ingo Scholtes
2022 B conf
ASONAM
Christoph Gote, Vincenzo Perri, Ingo Scholtes
2021 conf
WWW (Companion Volume)
Jürgen Hackl, Ingo Scholtes, Luka V. Petrovic, Vincenzo Perri, Luca Verginer, Christoph Gote
2021 J jnl
CoRR
Christoph Gote, Vincenzo Perri, Ingo Scholtes
2021 conf
WWW (Companion Volume)
Vincenzo Perri, Ingo Scholtes
2020 A conf
GD
Vincenzo Perri, Ingo Scholtes
2019 J jnl
CoRR
Vincenzo Perri, Ingo Scholtes
redb/extractors/js_extractors/js_content.py
← Index redb/extractors/js_extractors/js_content.py python
"""Persists raw + normalised text into the generic `code_text_content` table.

Reads the raw source and the deobfuscation result directly from the shared
JSContext so no extra compute happens here — both values are computed once
per sample (the source at JSContext construction, the deobfuscation lazily
on first access) and reused by any extractor that needs them.

`text_normalized` is left NULL when the deobfuscation pass produced no
output, so analysts can distinguish "we tried and got nothing" from
"normalisation succeeded".
"""

import inspect
from datetime import datetime, timezone
from typing import Any

from redb.extractors.enum import Tag
from redb.extractors.js_extractor import JSExtractor


class JSContentExtractor(JSExtractor):

    def __init__(
        self, filepath, log, exporters=None, index_prefix=None,
        known_benign=False, known_malicious=False, source=None, context=None,
    ):
        super().__init__(
            filepath, log, exporters, index_prefix,
            known_benign, known_malicious, source, context=context,
        )
        self.content_row = None
        self.log.debug(inspect.currentframe().f_code.co_name)

    def tag(self):
        return Tag.JS_CONTENT.value

    def extract(self):
        src = self.js_source
        if not src:
            return None

        deobfuscated, normalizer_used = self._context.deobfuscated

        self.content_row = {
            "content_type": self._context.content_type,
            "text_raw": src,
            "text_normalized": deobfuscated,  # may be None
            "normalizer_used": normalizer_used,  # may be None
        }
        return self.content_row

    def prepare_export_data(self, exporter_type: str) -> Any:
        if exporter_type != "ClickHouseExporter":
            return None
        if not self.content_row:
            return None

        r = self.content_row
        data = [[
            self.sha256,
            r["content_type"],
            r["text_raw"],
            r["text_normalized"],
            r["normalizer_used"],
            datetime.now(timezone.utc),
        ]]

        column_names = [
            "sha256",
            "content_type",
            "text_raw",
            "text_normalized",
            "normalizer_used",
            "analysis_date",
        ]

        column_type_names = [
            "FixedString(64)",
            "LowCardinality(String)",
            "String",
            "Nullable(String)",
            "Nullable(String)",
            "DateTime64(3, 'UTC')",
        ]

        return (data, column_names, column_type_names)

    def get_clickhouse_table(self) -> str:
        return "code_text_content"