The Comparison of Word Embedding Techniques in RNNs for Vulnerability Detection
The Comparison of Word Embedding Techniques in RNNs for Vulnerability Detection
复制标题
DOI:
10.5220/0010232301090120
复制
发表时间:
2021
期刊:
影响因子:
--
通讯作者:
H. N. Nguyen;Songpon Teerakanok;A. Inomata;T. Uehara
中科院分区:
文献类型:
--
作者:
H. N. Nguyen;Songpon Teerakanok;A. Inomata;T. Uehara
Many studies have combined Deep Learning and Natural Language Processing (NLP) techniques in security systems in performing tasks such as bug detection, vulnerability prediction, or classification. Most of these works relied on NLP embedding methods to generate input vectors for the deep learning models. However, there are many existing embedding methods to encode software text files into vectors, and the structures of neural networks are immense and heuristic. This leads to a challenge for the researcher to choose the appropriate combination of embedding techniques and the model structure for training the vulnerability detection classifiers. For this task, we propose a system to investigate the use of four popular word embedding techniques combined with four different recurrent neural networks (RNNs), including both bidirectional RNNs (BRNNs) and unidirectional RNNs. We trained and evaluated the models by using two types of vulnerable function datasets written in C code. Our results showed that the FastText embedding technique combined with BRNNs produced the most efficient detection rate, compared to other combinations, on a real-world but not on an artificially-produced dataset. Further experiments on other datasets are necessary to confirm this result.